Vulnerabilities (CVE)

Filtered by vendor Webeasymail Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2002-1415 1 Webeasymail 1 Webeasymail 2023-12-10 5.0 MEDIUM N/A
Format string vulnerability in SMTP service for WebEasyMail 3.4.2.2 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format strings in SMTP requests.
CVE-2002-1416 1 Webeasymail 1 Webeasymail 2023-12-10 5.0 MEDIUM N/A
The POP3 service for WebEasyMail 3.4.2.2 and earlier generates diffferent error messages for valid and invalid usernames during authentication, which makes it easier for remote attackers to conduct brute force attacks.