← Back

Kolab Server

kolab_server

Vendor: Kolab • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Kolab
1Kolab Server
Apr 29, 2026
Apr 27, 2010
N/A· v4
N/A· v3
7.5 HIGH· v2
Unspecified vulnerability in Kolab Webclient before 1.2.0 in Kolab Server before 2.2.3 allows attackers to have an unspecified impact via vectors related to an "image upload form."
2Clam Anti Virus
Kolab
2Clamav
Kolab Server
Apr 23, 2026
Aug 23, 2007
N/A· v4
N/A· v3
4.3 MEDIUM· v2
ClamAV before 0.91.2, as used in Kolab Server 2.0 through 2.2beta1 and other products, allows remote attackers to cause a denial of service (application crash) via (1) a crafted RTF file, which triggers a NULL dereferenc...Show more
ClamAV before 0.91.2, as used in Kolab Server 2.0 through 2.2beta1 and other products, allows remote attackers to cause a denial of service (application crash) via (1) a crafted RTF file, which triggers a NULL dereference in the cli_scanrtf function in libclamav/rtf.c; or (2) a crafted HTML document with a data: URI, which triggers a NULL dereference in the cli_html_normalise function in libclamav/htmlnorm.c. NOTE: some of these details are obtained from third party information.Show less