Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Atmail:
>> Atmail
>> 7.2.3
Security Vulnerabilities
CVE-2017-11617
Cross-site scripting (XSS) vulnerability in atmail prior to version 7.8.0.2 allows remote attackers to inject arbitrary web script or HTML within the body of an email via an IMG element with both single quotes and double quotes.
CVSS Score
6.1
EPSS Score
0.003
Published
2017-07-25
CVE-2017-9517
atmail before 7.8.0.2 has CSRF, allowing an attacker to upload and import users via CSV.
CVSS Score
8.8
EPSS Score
0.002
Published
2017-06-08
CVE-2017-9518
atmail before 7.8.0.2 has CSRF, allowing an attacker to change the SMTP hostname and hijack all emails.
CVSS Score
8.8
EPSS Score
0.002
Published
2017-06-08
CVE-2017-9519
atmail before 7.8.0.2 has CSRF, allowing an attacker to create a user account.
CVSS Score
8.8
EPSS Score
0.002
Published
2017-06-08
Page 1
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved