Filtered by vendor Icewarp Subscriptions
Total 65 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2020-14064 1 Icewarp 1 Mail Server 2024-08-04 6.5 Medium
IceWarp Email Server 12.3.0.1 has Incorrect Access Control for user accounts.
CVE-2020-14066 1 Icewarp 1 Mail Server 2024-08-04 8.8 High
IceWarp Email Server 12.3.0.1 allows remote attackers to upload JavaScript files that are dangerous for clients to access.
CVE-2020-14065 1 Icewarp 1 Mail Server 2024-08-04 6.5 Medium
IceWarp Email Server 12.3.0.1 allows remote attackers to upload files and consume disk space.
CVE-2020-8512 1 Icewarp 1 Icewarp Server 2024-08-04 6.1 Medium
In IceWarp Webmail Server through 11.4.4.1, there is XSS in the /webmail/ color parameter.
CVE-2022-35115 1 Icewarp 1 Webclient Dc2 2024-08-03 9.8 Critical
IceWarp WebClient DC2 - Update 2 Build 9 (13.0.2.9) was discovered to contain a SQL injection vulnerability via the search parameter at /webmail/server/webmail.php.