← Back

CVE-2007-0652

nvd nist
Published: Feb 15, 2007Modified: Apr 23, 2026

JSON object

Loading...
5.1
Vector
AV:N/AC:H/Au:N/C:P/I:P/A:P
Exploitability: 4.9 / Impact: 6.4
Source: NVD

Description

Cross-site request forgery (CSRF) vulnerability in MailEnable Professional before 2.37 allows remote attackers to modify arbitrary configurations and perform unauthorized actions as arbitrary users via a link or IMG tag.

Affected (61)

1 product
Mailenable Professional
Configuration A
61 vulnerable
Vulnerable SoftwareAffected Versions
Mailenable
Version 1.0.004
Version 1.0.005
Version 1.0.006
Version 1.0.007
Version 1.0.008
Version 1.0.009
Version 1.0.010
Version 1.0.011
Version 1.0.012
Version 1.0.013
Version 1.0.014
Version 1.0.015
Version 1.0.016
Version 1.0.017
Version 1.101
Version 1.102
Version 1.103
Version 1.104
Version 1.105
Version 1.106
Version 1.107
Version 1.108
Version 1.109
Version 1.110
Version 1.111
Version 1.112
Version 1.113
Version 1.114
Version 1.115
Version 1.116
Version 1.12
Version 1.13
Version 1.14
Version 1.15
Version 1.16
Version 1.17
Version 1.18
Version 1.19
Version 1.1
Version 1.2
Version 1.2a
Version 1.51
Version 1.52
Version 1.53
Version 1.54
Version 1.5
Version 1.6
Version 1.72
Version 1.73
Version 1.7
Version 1.82
Version 1.83
Version 1.84
Version 2.0
Version 2.1
Version 2.2
Version 2.32
Version 2.33
Version 2.34
Version 2.351
Version 2.35

References (14)

Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
PatchVendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
PatchVendor Advisory
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: PSIRT-CNA@flexerasoftware.com
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.