Debian Netqmail vulnerabilities
2 known vulnerabilities affecting debian/netqmail.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2020-3811HIGHCVSS 7.5v1.062020-05-26
CVE-2020-3811 [HIGH] CWE-665 CVE-2020-3811: qmail-verify as used in netqmail 1.06 is prone to a mail-address verification bypass vulnerability.
qmail-verify as used in netqmail 1.06 is prone to a mail-address verification bypass vulnerability.
cvelistv5nvd
CVE-2020-3812MEDIUMCVSS 5.5v1.062020-05-26
CVE-2020-3812 [MEDIUM] CWE-269 CVE-2020-3812: qmail-verify as used in netqmail 1.06 is prone to an information disclosure vulnerability. A local a
qmail-verify as used in netqmail 1.06 is prone to an information disclosure vulnerability. A local attacker can test for the existence of files and directories anywhere in the filesystem because qmail-verify runs as root and tests for the existence of files in the attacker's home directory, without dropping its privileges first.
cvelistv5nvd