Deerfield
deerfield
15 CVEs • 7 products
Products (7)
Click to collapseToggle
Products (7)
Click to collapse
CVEs (15)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
3Deerfield IcewarpMerak3Mail Server Visnetic Mail ServerWeb MailApr 16, 2026 Jul 21, 2006 N/A· v4 N/A· v3 4.0 MEDIUM· v2 Absolute path directory traversal vulnerability in (1) MERAK Mail Server for Windows 8.3.8r with before IceWarp Web Mail 5.6.1 and (2) VisNetic MailServer before 8.5.0.5 allows remote authenticated users to include arbit...Show more |
3Deerfield IcewarpMerak3Mail Server Visnetic Mail ServerWeb MailApr 16, 2026 Jul 21, 2006 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Absolute path directory traversal vulnerability in (a) MERAK Mail Server for Windows 8.3.8r with before IceWarp Web Mail 5.6.1 and (b) VisNetic MailServer before 8.5.0.5 allows remote attackers to include arbitrary files...Show more |
3Deerfield IcewarpMerak3Mail Server Visnetic Mail ServerWeb MailApr 16, 2026 Dec 28, 2005 N/A· v4 N/A· v3 5.0 MEDIUM· v2 mail/include.html in IceWarp Web Mail 5.5.1, as used by Merak Mail Server 8.3.0r and VisNetic Mail Server version 8.3.0 build 1, does not properly initialize the default_layout and layout_settings variables when an unrec...Show more |
3Deerfield IcewarpMerak3Mail Server Visnetic Mail ServerWeb MailApr 16, 2026 Dec 28, 2005 N/A· v4 N/A· v3 6.5 MEDIUM· v2 IceWarp Web Mail 5.5.1, as used by Merak Mail Server 8.3.0r and VisNetic Mail Server version 8.3.0 build 1, does not properly restrict acceptable values for the language parameter to mail/settings.html before it is store...Show more |
3Deerfield IcewarpMerak3Mail Server Visnetic Mail ServerWeb MailApr 16, 2026 Dec 28, 2005 N/A· v4 N/A· v3 5.0 MEDIUM· v2 dir/include.html in IceWarp Web Mail 5.5.1, as used by Merak Mail Server 8.3.0r and VisNetic Mail Server version 8.3.0 build 1, allows remote attackers to include arbitrary local files via a null byte (%00) in the lang p...Show more |
3Deerfield IcewarpMerak3Mail Server Visnetic Mail ServerWeb MailApr 16, 2026 Dec 28, 2005 N/A· v4 N/A· v3 7.5 HIGH· v2 PHP remote file include vulnerability in IceWarp Web Mail 5.5.1, as used by Merak Mail Server 8.3.0r and VisNetic Mail Server version 8.3.0 build 1, when register_globals is enabled, allows remote attackers to include ar...Show more |
VisNetic WebSite 3.5 allows remote attackers to obtain the full pathname of the server via a request containing a folder that does not exist, which leaks the pathname in an error message, as demonstrated using _vti_bin/f...Show more |
WebSite Pro 3.1.11.0 on Windows allows remote attackers to read script source code for files with extensions greater than 3 characters via a URL request that uses the equivalent 8.3 file name. |
Cross-site scripting (XSS) vulnerability in VisNetic Website before 3.5.15 allows remote attackers to inject arbitrary web script or HTML via the HTTP referer header (HTTP_REFERER) to a non-existent page, which is inject...Show more |
Buffer overflow in httpd32.exe in Deerfield VisNetic WebSite before 3.5.15 allows remote attackers to cause a denial of service (crash) via a long HTTP OPTIONS request. |
2Deerfield Working Resources Inc.2Badblue D2gfxApr 16, 2026 Dec 31, 2002 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Directory traversal vulnerability in (1) Deerfield D2Gfx 1.0.2 or (2) BadBlue Enterprise Edition 1.5.x and BadBlue Personal Edition 1.5.6 allows remote attackers to read arbitrary files via a ../ (dot dot slash) in the s...Show more |
FTP Serv-U 2.5e allows remote attackers to cause a denial of service by sending a large number of null bytes. |
Denial of service in MDaemon 2.7 via a large number of connection attempts. |
Buffer overflow in Serv-U FTP 2.5 allows remote users to conduct a denial of service via the SITE command. |
Denial of service in MDaemon WorldClient and WebConfig services via a long URL. |