📦 Mail2000

by Openfind

🔍 What is Mail2000?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-5399

HIGH CVSS 7.2 May 27, 2024

Openfind Mail2000 contains an OS command injection vulnerability in a specific API endpoint. Attackers with administrative access can exploit this to execute arbitrary commands on the server. This aff...

CVE-2024-6740

MEDIUM CVSS 6.1 Jul 15, 2024

Openfind Mail2000 has a stored cross-site scripting (XSS) vulnerability in email attachment handling. Unauthenticated remote attackers can inject malicious JavaScript via attachments, which executes w...

CVE-2023-22902

MEDIUM CVSS 5.4 Mar 27, 2023

Openfind Mail2000's file upload function has insufficient input filtering, allowing authenticated users to inject JavaScript. This enables cross-site scripting (XSS) attacks against other users. Only ...