← Back

Ability Mail Server

ability_mail_server

Vendor: Code Crafters • 4 CVEs

CVEs (4)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Code Crafters
1Ability Mail Server
Apr 29, 2026
Dec 21, 2013
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Cross-site scripting (XSS) vulnerability in Code-Crafters Ability Mail Server 3.1.1 allows remote attackers to inject arbitrary web script or HTML via the body of an email.
1Code Crafters
1Ability Mail Server
Apr 23, 2026
Sep 28, 2009
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Unspecified vulnerability in Code-Crafters Ability Mail Server before 2.70 allows remote attackers to cause a denial of service (daemon crash) via an IMAP4 FETCH command.
1Code Crafters
1Ability Mail Server
Apr 23, 2026
Nov 23, 2007
N/A· v4
N/A· v3
4.0 MEDIUM· v2
Ability Mail Server before 2.61 allows remote authenticated users to cause a denial of service (daemon crash) via (1) malformed number list ranges in unspecified IMAP commands, and possibly (2) a blank string in unspecif...Show more
Ability Mail Server before 2.61 allows remote authenticated users to cause a denial of service (daemon crash) via (1) malformed number list ranges in unspecified IMAP commands, and possibly (2) a blank string in unspecified messages.Show less
1Code Crafters
1Ability Mail Server
Apr 16, 2026
Dec 31, 2004
N/A· v4
N/A· v3
7.8 HIGH· v2
The (1) Webmail, (2) admin, and (3) SMTP services in Ability Mail Server 1.18 allow remote attackers to cause a denial of service (CPU consumption) via a large number of simultaneous connections to the service.