← Back

Mdaemon

mdaemon

Vendor: Alt N • 28 CVEs

CVEs (28)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Alt N
1Mdaemon
Apr 16, 2026
Aug 22, 2001
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Alt-N Technologies MDaemon 3.5.4 allows a remote attacker to create a denial of service via the URL request of a MS-DOS device (such as GET /aux) to (1) the Worldclient service at port 3000, or (2) the Webconfig service...Show more
Alt-N Technologies MDaemon 3.5.4 allows a remote attacker to create a denial of service via the URL request of a MS-DOS device (such as GET /aux) to (1) the Worldclient service at port 3000, or (2) the Webconfig service at port 3001.Show less
1Alt N
1Mdaemon
Apr 16, 2026
Feb 12, 2001
N/A· v4
N/A· v3
7.2 HIGH· v2
MDaemon Pro 3.5.1 and earlier allows local users to bypass the "lock server" security setting by pressing the Cancel button at the password prompt, then pressing the enter key.
1Alt N
1Mdaemon
Apr 16, 2026
Feb 12, 2001
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Webconfig, IMAP, and other services in MDaemon 3.5.0 and earlier allows remote attackers to cause a denial of service via a long URL terminated by a "\r\n" string.
1Alt N
1Mdaemon
Apr 16, 2026
Dec 11, 2000
N/A· v4
N/A· v3
7.5 HIGH· v2
Heap overflow in WebConfig in Mdaemon 3.1.1 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long URL.
1Alt N
1Mdaemon
Apr 16, 2026
Dec 11, 2000
N/A· v4
N/A· v3
7.5 HIGH· v2
Heap overflow in Worldclient in Mdaemon 3.1.1 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long URL.
1Alt N
1Mdaemon
Apr 16, 2026
Oct 20, 2000
N/A· v4
N/A· v3
2.6 LOW· v2
WorldClient email client in MDaemon 2.8 includes the session ID in the referer field of an HTTP request when the user clicks on a URL, which allows the visited web site to hijack the session ID and read the user's email.
1Alt N
1Mdaemon
Apr 16, 2026
Jun 16, 2000
N/A· v4
N/A· v3
2.6 LOW· v2
Race condition in MDaemon 2.8.5.0 POP server allows local users to cause a denial of service by entering a UIDL command and quickly exiting the server.
1Alt N
1Mdaemon
Apr 16, 2026
May 24, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Buffer overflow in MDaemon POP server allows remote attackers to cause a denial of service via a long user name.