CVEs (6)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
3Deerfield IcewarpMerak3Mail Server Visnetic Mail ServerWeb MailApr 16, 2026 Jul 21, 2006 N/A· v4 N/A· v3 4.0 MEDIUM· v2 Absolute path directory traversal vulnerability in (1) MERAK Mail Server for Windows 8.3.8r with before IceWarp Web Mail 5.6.1 and (2) VisNetic MailServer before 8.5.0.5 allows remote authenticated users to include arbit...Show more |
3Deerfield IcewarpMerak3Mail Server Visnetic Mail ServerWeb MailApr 16, 2026 Jul 21, 2006 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Absolute path directory traversal vulnerability in (a) MERAK Mail Server for Windows 8.3.8r with before IceWarp Web Mail 5.6.1 and (b) VisNetic MailServer before 8.5.0.5 allows remote attackers to include arbitrary files...Show more |
3Deerfield IcewarpMerak3Mail Server Visnetic Mail ServerWeb MailApr 16, 2026 Dec 28, 2005 N/A· v4 N/A· v3 5.0 MEDIUM· v2 mail/include.html in IceWarp Web Mail 5.5.1, as used by Merak Mail Server 8.3.0r and VisNetic Mail Server version 8.3.0 build 1, does not properly initialize the default_layout and layout_settings variables when an unrec...Show more |
3Deerfield IcewarpMerak3Mail Server Visnetic Mail ServerWeb MailApr 16, 2026 Dec 28, 2005 N/A· v4 N/A· v3 6.5 MEDIUM· v2 IceWarp Web Mail 5.5.1, as used by Merak Mail Server 8.3.0r and VisNetic Mail Server version 8.3.0 build 1, does not properly restrict acceptable values for the language parameter to mail/settings.html before it is store...Show more |
3Deerfield IcewarpMerak3Mail Server Visnetic Mail ServerWeb MailApr 16, 2026 Dec 28, 2005 N/A· v4 N/A· v3 5.0 MEDIUM· v2 dir/include.html in IceWarp Web Mail 5.5.1, as used by Merak Mail Server 8.3.0r and VisNetic Mail Server version 8.3.0 build 1, allows remote attackers to include arbitrary local files via a null byte (%00) in the lang p...Show more |
3Deerfield IcewarpMerak3Mail Server Visnetic Mail ServerWeb MailApr 16, 2026 Dec 28, 2005 N/A· v4 N/A· v3 7.5 HIGH· v2 PHP remote file include vulnerability in IceWarp Web Mail 5.5.1, as used by Merak Mail Server 8.3.0r and VisNetic Mail Server version 8.3.0 build 1, when register_globals is enabled, allows remote attackers to include ar...Show more |