Macallan Mail Solution vulnerabilities
2 known vulnerabilities affecting macallan/mail_solution.
Total CVEs
2
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2004-2071P3HIGHCVSS 7.5PoCv2.8.4.6_build_2602004-12-31
CVE-2004-2071 [HIGH] CVE-2004-2071: Macallan Mail Solution 2.8.4.6 (Build 260), and possibly earlier versions, allows remote attackers t
Macallan Mail Solution 2.8.4.6 (Build 260), and possibly earlier versions, allows remote attackers to bypass authentication in the web interface via an HTTP GET request with two slashes ("//") after the server name.
nvd
CVE-2006-0798P4MEDIUMCVSS 5.5≤ 4.8.03.0252006-02-19
CVE-2006-0798 [MEDIUM] CVE-2006-0798: Multiple directory traversal vulnerabilities in the IMAP service in Macallan Mail Solution before 4.
Multiple directory traversal vulnerabilities in the IMAP service in Macallan Mail Solution before 4.8.05.004 allow remote authenticated users to read e-mails of other users or create, modify, or delete directories via a .. (dot dot) in the argument to the (1) CREATE, (2) SELECT, (3) DELETE, or (4) RENAME commands.
nvd