Vulnerabilities > Extremail > Extremail > 1.1.3

DATE CVE VULNERABILITY TITLE RISK
2004-11-23 CVE-2004-0332 Authentication Bypass vulnerability in eXtremail
Extremail 1.5.9 does not check passwords correctly when they are all digits or begin with a digit, which allows remote attackers to gain privileges.
network
low complexity
extremail
critical
10.0
2001-06-21 CVE-2001-1078 Remote Format String vulnerability in eXtremail
Format string vulnerability in flog function of eXtremail 1.1.9 and earlier allows remote attackers to gain root privileges via format specifiers in the SMTP commands (1) HELO, (2) EHLO, (3) MAIL FROM, or (4) RCPT TO, and the POP3 commands (5) USER and (6) other commands that can be executed after POP3 authentication.
network
low complexity
extremail
critical
10.0