CVE-2024-41694
- EPSS 0.27%
- Veröffentlicht 30.07.2024 09:15:04
- Zuletzt bearbeitet 21.11.2024 09:32:59
Cybonet - CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
CVE-2024-41695
- EPSS 0.65%
- Veröffentlicht 30.07.2024 09:15:04
- Zuletzt bearbeitet 21.11.2024 09:32:59
Cybonet - CWE-22: Improper Limitation of a Pathname to a Restricted Directory
CVE-2023-31183
- EPSS 0.27%
- Veröffentlicht 08.05.2023 21:15:12
- Zuletzt bearbeitet 21.11.2024 08:01:34
Cybonet PineApp Mail Secure A reflected cross-site scripting (XSS) vulnerability was identified in the product, using an unspecified endpoint.
CVE-2022-22794
- EPSS 0.88%
- Veröffentlicht 24.02.2022 17:15:08
- Zuletzt bearbeitet 21.11.2024 06:47:28
Cybonet - PineApp Mail Relay Unauthenticated Sql Injection. Attacker can send a request to: /manage/emailrichment/userlist.php?CUSTOMER_ID_INNER=1 /admin/emailrichment/userlist.php?CUSTOMER_ID_INNER=1 /manage/emailrichment/usersunlist.php?CUSTOMER_ID...
CVE-2022-22793
- EPSS 0.31%
- Veröffentlicht 24.02.2022 17:15:07
- Zuletzt bearbeitet 21.11.2024 06:47:27
Cybonet - PineApp Mail Relay Local File Inclusion. Attacker can send a request to : /manage/mailpolicymtm/log/eml_viewer/email.content.body.php?filesystem_path=ENCDODED PATH and by doing that, the attacker can read Local Files inside the server.