Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Alt-n Subscribe
Filtered by product Mdaemon
Total 29 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2002-1738 1 Alt-n 1 Mdaemon 2017-07-10 5.0 MEDIUM N/A
Alt-N Technologies MDaemon 5.0.5.0 and earlier creates a default MDaemon mail account with a password of MServer, which could allow remote attackers to send anonymous email.
CVE-2003-1200 1 Alt-n 1 Mdaemon 2017-07-10 7.5 HIGH N/A
Stack-based buffer overflow in FORM2RAW.exe in Alt-N MDaemon 6.5.2 through 6.8.5 allows remote attackers to execute arbitrary code via a long From parameter to Form2Raw.cgi.
CVE-2006-2646 1 Alt-n 1 Mdaemon 2016-10-17 7.5 HIGH N/A
Buffer overflow in Alt-N MDaemon, possibly 9.0.1 and earlier, allows remote attackers to execute arbitrary code via a long A0001 argument that begins with a '"' (double quote).
CVE-2006-5709 1 Alt-n 1 Mdaemon 2011-03-07 10.0 HIGH N/A
Unspecified vulnerability in WorldClient in Alt-N Technologies MDaemon before 9.50 has unknown impact and attack vectors related to a "JavaScript exploit."
CVE-2000-0399 1 Alt-n 1 Mdaemon 2008-09-10 5.0 MEDIUM N/A
Buffer overflow in MDaemon POP server allows remote attackers to cause a denial of service via a long user name.
CVE-2006-5708 1 Alt-n 1 Mdaemon 2008-09-05 5.0 MEDIUM N/A
Multiple unspecified vulnerabilities in MDaemon and WorldClient in Alt-N Technologies MDaemon before 9.50 allow attackers to cause a denial of service (memory consumption) via unspecified vectors resulting in memory leaks.
CVE-2005-4266 1 Alt-n 2 Mdaemon, Worldclient 2008-09-05 7.5 HIGH N/A
WorldClient.dll in Alt-N MDaemon and WorldClient 8.1.3 trusts a Session parameter that contains a randomly generated session ID that is associated with a username, which allows remote attackers to perform actions as other users by guessing or sniffing the random value.
CVE-2002-1539 1 Alt-n 1 Mdaemon 2008-09-05 5.0 MEDIUM N/A
Buffer overflow in MDaemon POP server 6.0.7 and earlier allows remote authenticated users to cause a denial of service via long (1) DELE or (2) UIDL arguments.
CVE-2001-0064 1 Alt-n 1 Mdaemon 2008-09-05 5.0 MEDIUM N/A
Webconfig, IMAP, and other services in MDaemon 3.5.0 and earlier allows remote attackers to cause a denial of service via a long URL terminated by a "\r\n" string.