← Back

Mailenable

mailenable

89 CVEs • 7 products

Products (7)

Click to collapse
Toggle

CVEs (89)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Mailenable
2Mailenable Enterprise
Mailenable Professional
Apr 23, 2026
Oct 10, 2006
N/A· v4
N/A· v3
9.3 HIGH· v2
Buffer overflow in NTLM authentication in MailEnable Professional 2.0 and Enterprise 2.0 allows remote attackers to execute arbitrary code via "the signature field of NTLM Type 1 messages".
1Mailenable
3Mailenable Enterprise
Mailenable ProfessionalMailenable Standard
Apr 16, 2026
Sep 7, 2006
N/A· v4
N/A· v3
5.0 MEDIUM· v2
SMTP service in MailEnable Standard, Professional, and Enterprise before ME-10014 (20060904) allows remote attackers to cause a denial of service via an SPF lookup for a domain with a large number of records, which trigg...Show more
SMTP service in MailEnable Standard, Professional, and Enterprise before ME-10014 (20060904) allows remote attackers to cause a denial of service via an SPF lookup for a domain with a large number of records, which triggers a null pointer exception.Show less
1Mailenable
2Mailenable Enterprise
Mailenable Professional
Apr 16, 2026
Jun 28, 2006
N/A· v4
N/A· v3
5.0 MEDIUM· v2
The SMTP service of MailEnable Standard 1.92 and earlier, Professional 2.0 and earlier, and Enterprise 2.0 and earlier before the MESMTPC hotfix, allows remote attackers to cause a denial of service (application crash) v...Show more
The SMTP service of MailEnable Standard 1.92 and earlier, Professional 2.0 and earlier, and Enterprise 2.0 and earlier before the MESMTPC hotfix, allows remote attackers to cause a denial of service (application crash) via a HELO command with a null byte in the argument, possibly triggering a length inconsistency or a missing argument.Show less
1Mailenable
3Mailenable Enterprise
Mailenable ProfessionalMailenable Standard
Apr 16, 2026
Apr 15, 2006
N/A· v4
N/A· v3
10.0 HIGH· v2
Unspecified vulnerability in the POP service in MailEnable Standard Edition before 1.94, Professional Edition before 1.74, and Enterprise Edition before 1.22 has unknown attack vectors and impact related to "authenticati...Show more
Unspecified vulnerability in the POP service in MailEnable Standard Edition before 1.94, Professional Edition before 1.74, and Enterprise Edition before 1.22 has unknown attack vectors and impact related to "authentication exploits". NOTE: this is a different set of affected versions, and probably a different vulnerability than CVE-2006-1337.Show less
1Mailenable
2Mailenable Enterprise
Mailenable Professional
Apr 16, 2026
Mar 21, 2006
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Webmail in MailEnable Professional Edition before 1.73 and Enterprise Edition before 1.21 allows remote attackers to cause a denial of service (CPU consumption) via unspecified vectors involving "incorrectly encoded quot...Show more
Webmail in MailEnable Professional Edition before 1.73 and Enterprise Edition before 1.21 allows remote attackers to cause a denial of service (CPU consumption) via unspecified vectors involving "incorrectly encoded quoted-printable emails".Show less
1Mailenable
1Mailenable
Apr 16, 2026
Mar 21, 2006
N/A· v4
N/A· v3
7.5 HIGH· v2
Buffer overflow in the POP 3 (POP3) service in MailEnable Standard Edition before 1.93, Professional Edition before 1.73, and Enterprise Edition before 1.21 allows remote attackers to execute arbitrary code via unknown v...Show more
Buffer overflow in the POP 3 (POP3) service in MailEnable Standard Edition before 1.93, Professional Edition before 1.73, and Enterprise Edition before 1.21 allows remote attackers to execute arbitrary code via unknown vectors before authentication.Show less
1Mailenable
1Mailenable Enterprise
Apr 16, 2026
Feb 1, 2006
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Unspecified vulnerability in MailEnable Enterprise Edition before 1.2 allows remote attackers to cause a denial of service (CPU utilization) by viewing "formatted quoted-printable emails" via webmail.
1Mailenable
1Mailenable Professional
Apr 16, 2026
Feb 1, 2006
N/A· v4
N/A· v3
5.0 MEDIUM· v2
IMAP service in MailEnable Professional Edition before 1.72 allows remote attackers to cause a denial of service (service crash) via unspecified vectors involving the EXAMINE command.
1Mailenable
1Mailenable Enterprise
Apr 16, 2026
Dec 21, 2005
N/A· v4
N/A· v3
7.5 HIGH· v2
MailEnable Enterprise 1.1 before patch ME-10009 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via several "..." (triple dot) sequences in a UID FETCH command.
1Mailenable
2Mailenable Enterprise
Mailenable Professional
Apr 16, 2026
Dec 21, 2005
N/A· v4
N/A· v3
7.8 HIGH· v2
Multiple buffer overflows in MailEnable Professional 1.71 and Enterprise 1.1 before patch ME-10009 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via long (1) LIST, (2) LS...Show more
Multiple buffer overflows in MailEnable Professional 1.71 and Enterprise 1.1 before patch ME-10009 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via long (1) LIST, (2) LSUB, and (3) UID FETCH commands. NOTE: it is possible that these are alternate vectors for the issue described in CVE-2005-4402.Show less
1Mailenable
2Mailenable Enterprise
Mailenable Professional
Apr 16, 2026
Dec 20, 2005
N/A· v4
N/A· v3
6.5 MEDIUM· v2
Buffer overflow in MailEnable Professional 1.71 and earlier, and Enterprise 1.1 and earlier, allows remote authenticated users to execute arbitrary code via a long IMAP EXAMINE command.
1Mailenable
2Mailenable Enterprise
Mailenable Professional
Apr 16, 2026
Dec 5, 2005
N/A· v4
N/A· v3
7.8 HIGH· v2
Multiple unspecified vulnerabilities in MailEnable Professional 1.6 and earlier and Enterprise 1.1 and earlier allow attackers to cause a denial of service (crash) via invalid IMAP commands.
1Mailenable
2Mailenable Enterprise
Mailenable Professional
Apr 16, 2026
Nov 26, 2005
N/A· v4
N/A· v3
4.0 MEDIUM· v2
IMAP service (meimaps.exe) of MailEnable Professional 1.7 and Enterprise 1.1 allows remote authenticated attackers to cause a denial of service (application crash) by using RENAME with a non-existent mailbox, a different...Show more
IMAP service (meimaps.exe) of MailEnable Professional 1.7 and Enterprise 1.1 allows remote authenticated attackers to cause a denial of service (application crash) by using RENAME with a non-existent mailbox, a different vulnerability than CVE-2005-3690.Show less
1Mailenable
2Mailenable Enterprise
Mailenable Professional
Apr 16, 2026
Nov 19, 2005
N/A· v4
N/A· v3
7.5 HIGH· v2
Stack-based buffer overflow in the IMAP service (meimaps.exe) of MailEnable Professional 1.6 and earlier and Enterprise 1.1 and earlier allows remote attackers to execute arbitrary code via a long mailbox name in the (1)...Show more
Stack-based buffer overflow in the IMAP service (meimaps.exe) of MailEnable Professional 1.6 and earlier and Enterprise 1.1 and earlier allows remote attackers to execute arbitrary code via a long mailbox name in the (1) select, (2) create, (3) delete, (4) rename, (5) subscribe, or (6) unsubscribe commands.Show less
1Mailenable
2Mailenable Enterprise
Mailenable Professional
Apr 16, 2026
Oct 5, 2005
N/A· v4
N/A· v3
7.5 HIGH· v2
Buffer overflow in the W3C logging for MailEnable Enterprise 1.1 and Professional 1.6 allows remote attackers to execute arbitrary code.
1Mailenable
1Mailenable Professional
Apr 16, 2026
Jul 18, 2005
N/A· v4
N/A· v3
7.2 HIGH· v2
Stack-based buffer overflow in the IMAP daemon (imapd) in MailEnable Professional 1.54 allows remote authenticated users to execute arbitrary code via the status command with a long mailbox name.
1Mailenable
2Mailenable Professional
Mailenable Standard
Apr 16, 2026
Jul 12, 2005
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Unknown vulnerability in the SMTP service in MailEnable Standard before 1.9 and Professional before 1.6 allows remote attackers to cause a denial of service (crash) during authentication.
1Mailenable
1Mailenable Professional
Apr 16, 2026
Jul 12, 2005
N/A· v4
N/A· v3
10.0 HIGH· v2
Unknown vulnerability in the HTTPMail service in MailEnable Professional before 1.6 has unknown impact and attack vectors.
1Mailenable
2Mailenable Enterprise
Mailenable Professional
Apr 16, 2026
May 31, 2005
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Unknown vulnerability in SMTP authentication for MailEnable allows remote attackers to cause a denial of service (crash).
1Mailenable
2Mailenable Enterprise
Mailenable Professional
Apr 16, 2026
May 2, 2005
N/A· v4
N/A· v3
7.5 HIGH· v2
Buffer overflow in HTTPMail in MailEnable Enterprise 1.04 and earlier and Professional 1.54 and earlier allows remote attackers to execute arbitrary code via a long HTTP Authorization header.