Vulnerabilities
Vulnerable Software
Mdaemon:  Security Vulnerabilities
An XSS issue was discovered in MDaemon Email Server version 25.0.1 and below. An attacker can send a specially crafted HTML e-mail message with JavaScript in an img tag. This could allow a remote attacker to load arbitrary JavaScript code in the context of a webmail user's browser window, and access user data.
CVSS Score
6.1
EPSS Score
0.001
Published
2025-04-29
CVE-2024-11182
Known exploited
An XSS issue was discovered in MDaemon Email Server before versionĀ 24.5.1c. An attacker can send an HTML e-mail message with JavaScript in an img tag. This could allow a remote attacker to load arbitrary JavaScript code in the context of a webmail user's browser window.
CVSS Score
6.1
EPSS Score
0.351
Published
2024-11-15
MDaemon SecurityGateway through 9.0.3 allows XSS via a crafted Message Content Filtering rule. This might allow domain administrators to conduct attacks against global administrators.
CVSS Score
4.8
EPSS Score
0.001
Published
2023-12-31
Alt-N Technologies Mdaemon 5.0 through 5.0.6 uses a weak encryption algorithm to store user passwords, which allows local users to crack passwords.
CVSS Score
5.5
EPSS Score
0.0
Published
2002-12-31


Contact Us

Shodan ® - All rights reserved