361,800
Total CVEs
26,223
Critical
85,816
High
1,626
CISA KEV
1,557
This Week
28 results · Page 1/2
Atmail v6.6.0 was discovered to contain a SQL injection vulnerability via the username parameter on the login page.
atmail
Atmail 5.62 allows XSS via the mail/parse.php?file=html/$this-%3ELanguage/help/filexp.html&FirstLoad=1&HelpFile=file.html Search Terms field.
atmail
atmail 6.5.0 allows XSS via the index.php/admin/index/ error parameter.
atmail
WebAdmin Control Panel in Atmail 6.5.0 (a version released in 2012) allows XSS via the format parameter to the default URI. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
atmail