← Back

Dmailweb

dmailweb

Vendor: Netwin • 4 CVEs

CVEs (4)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Netwin
2Cwmail
Dmailweb
Apr 16, 2026
Jun 23, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The default configuration of NetWin dMailWeb and cwMail trusts all POP servers, which allows attackers to bypass normal authentication and cause a denial of service.
1Netwin
2Cwmail
Dmailweb
Apr 16, 2026
Jun 23, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
NetWin dMailWeb and cwMail 2.6g and earlier allows remote attackers to bypass authentication and use the server for mail relay via a username that contains a carriage return.
1Netwin
2Cwmail
Dmailweb
Apr 16, 2026
Jun 21, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
NetWin dMailWeb and cwMail 2.6g and earlier allows remote attackers to cause a denial of service via a long username parameter.
1Netwin
2Cwmail
Dmailweb
Apr 16, 2026
Jun 21, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
NetWin dMailWeb and cwMail 2.6i and earlier allows remote attackers to cause a denial of service via a long POP parameter (pophost).