Vendor
netqmail
Products
3
CVEs
3
Across products
5
Status
Private
Products
3- 2 CVEs
- 2 CVEs
- 1 CVE
Recent CVEs
3| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2020-3811 | Hig | 0.49 | 7.5 | 0.02 | May 26, 2020 | qmail-verify as used in netqmail 1.06 is prone to a mail-address verification bypass vulnerability. | ||
| CVE-2020-3812 | Med | 0.36 | 5.5 | 0.00 | May 26, 2020 | qmail-verify as used in netqmail 1.06 is prone to an information disclosure vulnerability. A local attacker can test for the existence of files and directories anywhere in the filesystem because qmail-verify runs as root and tests for the existence of files in the attacker's… | ||
| CVE-2011-1431 | 0.00 | — | 0.05 | Mar 16, 2011 | The STARTTLS implementation in qmail-smtpd.c in qmail-smtpd in the netqmail-1.06-tls patch for netqmail 1.06 does not properly restrict I/O buffering, which allows man-in-the-middle attackers to insert commands into encrypted SMTP sessions by sending a cleartext command that is… |
- risk 0.49cvss 7.5epss 0.02
qmail-verify as used in netqmail 1.06 is prone to a mail-address verification bypass vulnerability.
- risk 0.36cvss 5.5epss 0.00
qmail-verify as used in netqmail 1.06 is prone to an information disclosure vulnerability. A local attacker can test for the existence of files and directories anywhere in the filesystem because qmail-verify runs as root and tests for the existence of files in the attacker's…
- CVE-2011-1431Mar 16, 2011risk 0.00cvss —epss 0.05
The STARTTLS implementation in qmail-smtpd.c in qmail-smtpd in the netqmail-1.06-tls patch for netqmail 1.06 does not properly restrict I/O buffering, which allows man-in-the-middle attackers to insert commands into encrypted SMTP sessions by sending a cleartext command that is…