Vulnerabilities > Accellion

DATE CVE VULNERABILITY TITLE RISK
2009-08-19 CVE-2008-7012 Unspecified vulnerability in Accellion Secure File Transfer Appliance 70135
courier/1000@/api_error_email.html (aka "error reporting page") in Accellion File Transfer Appliance FTA_7_0_178, and possibly other versions before FTA_7_0_189, allows remote attackers to send spam e-mail via modified description and client_email parameters.
network
low complexity
accellion
7.8
2008-08-27 CVE-2008-3850 Cross-Site Scripting vulnerability in Accellion Secure File Transfer Appliance 70135
Cross-site scripting (XSS) vulnerability in Accellion File Transfer FTA_7_0_135 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to courier/forgot_password.html.
network
accellion CWE-79
4.3