← Back

Altn

altn

25 CVEs • 5 products

Products (5)

Click to collapse
Toggle

CVEs (25)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Altn
1Mdaemon
Jun 17, 2026
Feb 21, 2019
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
MDaemon Webmail 14.x through 18.x before 18.5.2 has XSS (issue 2 of 2).
1Altn
1Mdaemon
Jun 17, 2026
Feb 21, 2019
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
MDaemon Webmail 14.x through 18.x before 18.5.2 has XSS (issue 1 of 2).
1Altn
1Mdaemon
Apr 29, 2026
Aug 12, 2012
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Multiple cross-site scripting (XSS) vulnerabilities in Alt-N MDaemon Free 12.5.4 allow remote attackers to inject arbitrary web script or HTML via an e-mail message body with (1) the Cascading Style Sheets (CSS) expressi...Show more
Multiple cross-site scripting (XSS) vulnerabilities in Alt-N MDaemon Free 12.5.4 allow remote attackers to inject arbitrary web script or HTML via an e-mail message body with (1) the Cascading Style Sheets (CSS) expression property in conjunction with a CSS comment within the STYLE attribute of an IMG element, (2) the CSS expression property in conjunction with multiple CSS comments within the STYLE attribute of an arbitrary element, or (3) an innerHTML attribute within an XML document.Show less
1Altn
1Mdaemon
Apr 23, 2026
Jun 10, 2008
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The WordClient interface in Alt-N Technologies MDaemon 9.6.5 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted HTTP POST request. NOTE: the provenance of...Show more
The WordClient interface in Alt-N Technologies MDaemon 9.6.5 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted HTTP POST request. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.Show less
1Altn
1Mdaemon
Apr 23, 2026
Mar 17, 2008
N/A· v4
N/A· v3
6.5 MEDIUM· v2
Stack-based buffer overflow in the IMAP server in Alt-N Technologies MDaemon 9.6.4 allows remote authenticated users to execute arbitrary code via a FETCH command with a long BODY.