← Back

Firstclass

firstclass

Vendor: Opentext • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
2Cetrinity
Opentext
4Firstclass
FirstclassServer And Internet Services+1 more
Mar 23, 2026
Jun 1, 2007
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Centrinity FirstClass 8.3 and earlier, and Server and Internet Services 8.0 and earlier, do not properly handle a URL with a null ("%00") character, which allows remote attackers to conduct cross-site scripting (XSS) att...Show more
Centrinity FirstClass 8.3 and earlier, and Server and Internet Services 8.0 and earlier, do not properly handle a URL with a null ("%00") character, which allows remote attackers to conduct cross-site scripting (XSS) attacks. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.Show less
2Centrinity
Opentext
2Centrinity Firstclass
Firstclass
Apr 6, 2026
Aug 22, 2001
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Centrinity First Class Internet Services 5.50 allows for the circumventing of the default 'spam' filters via the presence of '<@>' in the 'From:' field, which allows remote attackers to send spoofed email with the identi...Show more
Centrinity First Class Internet Services 5.50 allows for the circumventing of the default 'spam' filters via the presence of '<@>' in the 'From:' field, which allows remote attackers to send spoofed email with the identity of local users.Show less