Vulnerabilities > Altn

DATE CVE VULNERABILITY TITLE RISK
2022-08-25 CVE-2022-37238 Cross-site Scripting vulnerability in Altn Security Gateway for Email Servers 8.5.2
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to Cross Site Scripting (XSS) via the currentRequest parameter.
network
low complexity
altn CWE-79
5.4
2022-08-25 CVE-2022-37239 Cross-site Scripting vulnerability in Altn Security Gateway for Email Servers 8.5.2
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to Cross Site Scripting (XSS) via the rulles_list_ajax endpoint.
network
low complexity
altn CWE-79
5.4
2022-08-25 CVE-2022-37240 Injection vulnerability in Altn Security Gateway for Email Servers 8.5.2
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to HTTP Response splitting via the format parameter.
network
low complexity
altn CWE-74
critical
9.8
2022-08-25 CVE-2022-37241 Cross-site Scripting vulnerability in Altn Security Gateway for Email Servers 8.5.2
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to Cross Site Scripting (XSS) via the data_leak_list_ajax endpoint.
network
low complexity
altn CWE-79
5.4
2022-08-25 CVE-2022-37242 Injection vulnerability in Altn Security Gateway for Email Servers 8.5.2
MDaemon Technologies SecurityGateway for Email Servers 8.5.2, is vulnerable to HTTP Response splitting via the data parameter.
network
low complexity
altn CWE-74
critical
9.8
2022-08-25 CVE-2022-37243 Cross-site Scripting vulnerability in Altn Security Gateway for Email Servers 8.5.2
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to Cross Site Scripting (XSS) via the whitelist endpoint.
network
low complexity
altn CWE-79
5.4
2022-08-25 CVE-2022-37244 Cross-site Scripting vulnerability in Altn Security Gateway for Email Servers 8.5.2
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to IFRAME Injectionvia the currentRequest parameter.
network
low complexity
altn CWE-79
5.4
2022-08-25 CVE-2022-37245 Cross-site Scripting vulnerability in Altn Security Gateway for Email Servers 8.5.2
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to Cross Site Scripting (XSS) via the Blacklist endpoint.
network
low complexity
altn CWE-79
5.4
2022-05-11 CVE-2022-29975 Cross-site Scripting vulnerability in Altn Mdaemon
An Authenticated Reflected Cross-site scripting at CC Parameter was discovered in MDaemon before 22.0.0 .
network
low complexity
altn CWE-79
5.4
2022-05-11 CVE-2022-29976 Cross-site Scripting vulnerability in Altn Mdaemon
An Authenticated Reflected Cross-site scripting at BCC Parameter was discovered in MDaemon before 22.0.0 .
network
low complexity
altn CWE-79
5.4