Skip to main content

Vendor archive

alt-n CVEs

Beta · best-effort

40 CVEs tagged to vendor alt-n3 Critical, 11 High, 19 Medium, 7 Low, 0 Unrated.

CVE-2008-6967

Published Aug 13, 2009

Multiple unspecified vulnerabilities in WorldClient in Alt-N MDaemon before 10.02 have unknown impact and attack vectors, probably related to cross-site scripting (XSS) and WorldC…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-4193

Published Sep 24, 2008

Stack-based buffer overflow in SecurityGateway.dll in Alt-N Technologies SecurityGateway 1.0.1 allows remote attackers to execute arbitrary code via a long username parameter.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2007-3622

Published Jul 9, 2007

Unspecified vulnerability in DomainPOP in Alt-N Technologies MDaemon before 9.61 allows remote attackers to cause a denial of service (crash) via malformed messages.

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2006-5968

Published Nov 17, 2006

MDaemon 9.0.5, 9.0.6, 9.51, and 9.53, and possibly other versions, installs the MDaemon application folder with insecure permissions (Users create files/directories), which allows…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-5708

Published Nov 4, 2006

Multiple unspecified vulnerabilities in MDaemon and WorldClient in Alt-N Technologies MDaemon before 9.50 allow attackers to cause a denial of service (memory consumption) via uns…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-5709

Published Nov 4, 2006

Unspecified vulnerability in WorldClient in Alt-N Technologies MDaemon before 9.50 has unknown impact and attack vectors related to a "JavaScript exploit."

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2006-4620

Published Sep 7, 2006

The useredit_account.wdm module in Alt-N WebAdmin 3.2.5 running with MDaemon 9.0.6, and possibly earlier versions, allows remote authenticated domain administrators to gain privil…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-4364

Published Aug 27, 2006

Multiple heap-based buffer overflows in the POP3 server in Alt-N Technologies MDaemon before 9.0.6 allow remote attackers to cause a denial of service (daemon crash) and possibly…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-4370

Published Aug 26, 2006

Alt-N WebAdmin 3.2.3 and 3.2.4 running with MDaemon 9.0.5, and possibly earlier, allow remote authenticated domain administrators to change a global administrator's password and g…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-4371

Published Aug 26, 2006

Multiple directory traversal vulnerabilities in Alt-N WebAdmin 3.2.3 and 3.2.4 running with MDaemon 9.0.5, and possibly earlier, allow remote authenticated global administrators t…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-2646

Published May 30, 2006

Buffer overflow in Alt-N MDaemon, possibly 9.0.1 and earlier, allows remote attackers to execute arbitrary code via a long A0001 argument that begins with a '"' (double quote).

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-0925

Published Feb 28, 2006

Format string vulnerability in the IMAP4rev1 server in Alt-N MDaemon 8.1.1 and possibly 8.1.4 allows remote attackers to cause a denial of service (CPU consumption) by creating an…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-4266

Published Dec 15, 2005

WorldClient.dll in Alt-N MDaemon and WorldClient 8.1.3 trusts a Session parameter that contains a randomly generated session ID that is associated with a username, which allows re…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2005-4209

Published Dec 13, 2005

WorldClient webmail in Alt-N MDaemon 8.1.3 allows remote attackers to prevent arbitrary users from accessing their inboxes via script tags in the Subject header of an e-mail messa…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-0317

Published Jan 28, 2005

Cross-site scripting (XSS) vulnerability in useredit_account.wdm in Alt-N WebAdmin 3.0.4 allows remote attackers to inject arbitrary web script or HTML via the user parameter.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-0318

Published Jan 28, 2005

useredit_account.wdm in Alt-N WebAdmin 3.0.4 does not properly validate account edits by the logged in user, which allows remote authenticated users to edit other users' account i…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-0319

Published Jan 28, 2005

Direct remote injection vulnerability in modalfram.wdm in Alt-N WebAdmin 3.0.4 allows remote attackers to load external webpages that appear to come from the WebAdmin server, whic…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-1546

Published Dec 31, 2004

Multiple buffer overflows in MDaemon 6.5.1 allow remote attackers to cause a denial of service (application crash) via a long (1) SAML, SOML, SEND, or MAIL command to the SMTP ser…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-2292

Published Dec 31, 2004

Buffer overflow in Alt-N MDaemon 7.0.1 allows remote attackers to cause a denial of service (application crash) via a long STATUS command to the IMAP server.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-2504

Published Dec 31, 2004

The GUI in Alt-N Technologies MDaemon 7.2 and earlier, including 6.8, executes child processes such as NOTEPAD.EXE with SYSTEM privileges when users create new files, which allows…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2003-1463

Published Dec 31, 2003

Absolute path traversal vulnerability in Alt-N Technologies WebAdmin 2.0.0 through 2.0.2 allows remote attackers with administrator privileges to (1) determine the installation pa…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2003-1470

Published Dec 31, 2003

Buffer overflow in IMAP service in MDaemon 6.7.5 and earlier allows remote authenticated users to cause a denial of service (crash) and execute arbitrary code via a CREATE command…

CVSS 9.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2003-1471

Published Dec 31, 2003

MDaemon POP server 6.0.7 and earlier allows remote authenticated users to cause a denial of service (crash) via a (1) DELE or (2) UIDL with a negative number.

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-1200

Published Dec 29, 2003

Stack-based buffer overflow in FORM2RAW.exe in Alt-N MDaemon 6.5.2 through 6.8.5 allows remote attackers to execute arbitrary code via a long From parameter to Form2Raw.cgi.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-25 of 40 CVEsPage 1 of 2