← Back

Security Gateway For Email Servers

security_gateway_for_email_servers

Vendor: Altn • 8 CVEs

CVEs (8)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Altn
1Security Gateway For Email Servers
Jun 17, 2026
Aug 25, 2022
N/A· v4
5.4 MEDIUM· v3
N/A· v2
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to Cross Site Scripting (XSS) via the currentRequest parameter.
1Altn
1Security Gateway For Email Servers
Jun 17, 2026
Aug 25, 2022
N/A· v4
5.4 MEDIUM· v3
N/A· v2
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to Cross Site Scripting (XSS) via the Blacklist endpoint.
1Altn
1Security Gateway For Email Servers
Jun 17, 2026
Aug 25, 2022
N/A· v4
5.4 MEDIUM· v3
N/A· v2
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to IFRAME Injectionvia the currentRequest parameter. after login leads to inject malicious tag leads to IFRAME injection.
1Altn
1Security Gateway For Email Servers
Jun 17, 2026
Aug 25, 2022
N/A· v4
5.4 MEDIUM· v3
N/A· v2
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to Cross Site Scripting (XSS) via the whitelist endpoint.
1Altn
1Security Gateway For Email Servers
Jun 17, 2026
Aug 25, 2022
N/A· v4
9.8 CRITICAL· v3
N/A· v2
MDaemon Technologies SecurityGateway for Email Servers 8.5.2, is vulnerable to HTTP Response splitting via the data parameter.
1Altn
1Security Gateway For Email Servers
Jun 17, 2026
Aug 25, 2022
N/A· v4
5.4 MEDIUM· v3
N/A· v2
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to Cross Site Scripting (XSS) via the data_leak_list_ajax endpoint.
1Altn
1Security Gateway For Email Servers
Jun 17, 2026
Aug 25, 2022
N/A· v4
9.8 CRITICAL· v3
N/A· v2
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to HTTP Response splitting via the format parameter.
1Altn
1Security Gateway For Email Servers
Jun 17, 2026
Aug 25, 2022
N/A· v4
5.4 MEDIUM· v3
N/A· v2
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to Cross Site Scripting (XSS) via the rulles_list_ajax endpoint.