Vulnerabilities > Altn > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-08-25 CVE-2022-37238 Cross-site Scripting vulnerability in Altn Security Gateway for Email Servers 8.5.2
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to Cross Site Scripting (XSS) via the currentRequest parameter.
network
low complexity
altn CWE-79
5.4
2022-08-25 CVE-2022-37239 Cross-site Scripting vulnerability in Altn Security Gateway for Email Servers 8.5.2
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to Cross Site Scripting (XSS) via the rulles_list_ajax endpoint.
network
low complexity
altn CWE-79
5.4
2022-08-25 CVE-2022-37241 Cross-site Scripting vulnerability in Altn Security Gateway for Email Servers 8.5.2
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to Cross Site Scripting (XSS) via the data_leak_list_ajax endpoint.
network
low complexity
altn CWE-79
5.4
2022-08-25 CVE-2022-37243 Cross-site Scripting vulnerability in Altn Security Gateway for Email Servers 8.5.2
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to Cross Site Scripting (XSS) via the whitelist endpoint.
network
low complexity
altn CWE-79
5.4
2022-08-25 CVE-2022-37244 Cross-site Scripting vulnerability in Altn Security Gateway for Email Servers 8.5.2
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to IFRAME Injectionvia the currentRequest parameter.
network
low complexity
altn CWE-79
5.4
2022-08-25 CVE-2022-37245 Cross-site Scripting vulnerability in Altn Security Gateway for Email Servers 8.5.2
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to Cross Site Scripting (XSS) via the Blacklist endpoint.
network
low complexity
altn CWE-79
5.4
2022-05-11 CVE-2022-29975 Cross-site Scripting vulnerability in Altn Mdaemon
An Authenticated Reflected Cross-site scripting at CC Parameter was discovered in MDaemon before 22.0.0 .
network
low complexity
altn CWE-79
5.4
2022-05-11 CVE-2022-29976 Cross-site Scripting vulnerability in Altn Mdaemon
An Authenticated Reflected Cross-site scripting at BCC Parameter was discovered in MDaemon before 22.0.0 .
network
low complexity
altn CWE-79
5.4
2022-04-05 CVE-2022-25356 XML Injection (aka Blind XPath Injection) vulnerability in Altn Securitygateway
Alt-N MDaemon Security Gateway through 8.5.0 allows SecurityGateway.dll?view=login XML Injection.
network
low complexity
altn CWE-91
5.3
2021-04-14 CVE-2021-27180 Cross-site Scripting vulnerability in Altn Mdaemon
An issue was discovered in MDaemon before 20.0.4.
network
low complexity
altn CWE-79
6.1