Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Hgiga Subscribe
Filtered by product Oaklouds Mailsherlock
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-17542 1 Hgiga 1 Oaklouds Mailsherlock 2019-10-09 5.0 MEDIUM 5.3 MEDIUM
SQL Injection exists in MailSherlock before 1.5.235 for OAKlouds allows an unauthenticated user to extract the subjects of the emails of other users within the enterprise via the select_mid parameter in an letgo.cgi request.