📦

mailenable_enterprise

Vendor: mailenable

Actively Exploited 0 CISA KEV List
PoC / Exploits 14 Code Available
Total RCEs 6 Remote Access
Total CVEs 36 Total Indexed
Avg. EPSS 17.96% Exploit Prob.
Latest CVE CVE-2008-1275 Mar 10

Security Vulnerability Index

Page 3 / 4
4.0 CVSS
CVE-2005-3813
Exploit Found

IMAP service (meimaps.exe) of MailEnable Professional 1.7 and Enterprise 1.1 allows remote authenticated attackers to cause a denial of service (application crash) by using RENAME with a non-existent mailbox, a different vulnerability than CVE-2005-3690.

EPSS: 6.22%
5.0 CVSS

Directory traversal vulnerability in the IMAP service (meimaps.exe) of MailEnable Professional 1.6 and earlier and Enterprise 1.1 and earlier allows remote attackers to create or rename arbitrary mail directories via the mailbox name argument of the (1) create or (2) rename commands.

EPSS: 4.06%
7.5 CVSS

Stack-based buffer overflow in the IMAP service (meimaps.exe) of MailEnable Professional 1.6 and earlier and Enterprise 1.1 and earlier allows remote attackers to execute arbitrary code via a long mailbox name in the (1) select, (2) create, (3) delete, (4) rename, (5) subscribe, or (6) unsubscribe commands.

EPSS: 11.91%
7.5 CVSS
CVE-2005-3155
RCE Exploit Found

Buffer overflow in the W3C logging for MailEnable Enterprise 1.1 and Professional 1.6 allows remote attackers to execute arbitrary code.

EPSS: 86.48%
5.0 CVSS

Unknown vulnerability in SMTP authentication for MailEnable allows remote attackers to cause a denial of service (crash).

EPSS: 2.43%
7.5 CVSS

Buffer overflow in the IMAP service for MailEnable Enterprise 1.04 and earlier and Professional 1.54 allows remote attackers to execute arbitrary code via a long AUTHENTICATE command.

EPSS: 17.20%
7.5 CVSS
CVE-2005-1348
RCE Exploit Found

Buffer overflow in HTTPMail in MailEnable Enterprise 1.04 and earlier and Professional 1.54 and earlier allows remote attackers to execute arbitrary code via a long HTTP Authorization header.

EPSS: 91.10%
5.0 CVSS
CVE-2005-1013
Exploit Found

The SMTP service in MailEnable Enterprise 1.04 and earlier and Professional 1.54 and earlier allows remote attackers to cause a denial of service (server crash) via an EHLO command with a Unicode string.

EPSS: 27.16%
7.5 CVSS
CVE-2004-2501
Exploit Found

Buffer overflow in the IMAP service of MailEnable Professional Edition 1.52 and Enterprise Edition 1.01 allows remote attackers to execute arbitrary code via (1) a long command string or (2) a long string to the MEIMAP service and then terminating the connection.

EPSS: 61.01%
5.0 CVSS

MailEnable Professional Edition before 1.53 and Enterprise Edition before 1.02 allows remote attackers to cause a denial of service (crash) via malformed (1) SMTP or (2) IMAP commands.

EPSS: 1.97%