CVEs (5)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Double Precision Incorporated 1Courier Mta Apr 16, 2026 May 30, 2006 N/A· v4 N/A· v3 7.8 HIGH· v2 libs/comverp.c in Courier MTA before 0.53.2 allows attackers to cause a denial of service (CPU consumption) via unknown vectors involving usernames that contain the "=" (equals) character, which is not properly handled d...Show more |
3Double Precision Incorporated GentooInter74Courier Imap Courier MtaLinux+1 moreApr 16, 2026 Apr 15, 2004 N/A· v4 N/A· v3 7.5 HIGH· v2 Multiple buffer overflows in (1) iso2022jp.c or (2) shiftjis.c for Courier-IMAP before 3.0.0, Courier before 0.45, and SqWebMail before 4.0.0 may allow remote attackers to execute arbitrary code "when Unicode character i...Show more |
2Double Precision Incorporated Inter72Courier Imap Courier MtaApr 16, 2026 Feb 19, 2003 N/A· v4 N/A· v3 7.5 HIGH· v2 SQL injection vulnerability in the PostgreSQL auth module for courier 0.40 and earlier allows remote attackers to execute SQL code via the user name. |
1Double Precision Incorporated 1Courier Mta Apr 16, 2026 Nov 29, 2002 N/A· v4 N/A· v3 4.6 MEDIUM· v2 Courier sqwebmail before 0.40.0 does not quickly drop privileges after startup in certain cases, which could allow local users to read arbitrary files. |
1Double Precision Incorporated 1Courier Mta Apr 16, 2026 Oct 4, 2002 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Double Precision Courier e-mail MTA allows remote attackers to cause a denial of service (CPU consumption) via a message with an extremely large or negative value for the year, which causes a tight loop. |