Show filters
11 Total Results
Displaying 1-10 of 11
Sort by:
Attacker Value
Unknown

CVE-2023-22333

Disclosure Date: January 30, 2023 (last updated October 08, 2023)
Cross-site scripting vulnerability in EasyMail 2.00.130 and earlier allows a remote unauthenticated attacker to inject an arbitrary script.
Attacker Value
Unknown

CVE-2015-9409

Disclosure Date: September 25, 2019 (last updated November 27, 2024)
The alo-easymail plugin before 2.6.01 for WordPress has CSRF with resultant XSS in pages/alo-easymail-admin-options.php.
Attacker Value
Unknown

CVE-2009-4663

Disclosure Date: March 03, 2010 (last updated October 04, 2023)
Heap-based buffer overflow in the Quiksoft EasyMail Objects 6 ActiveX control allows remote attackers to execute arbitrary code via a long argument to the AddAttachment method.
0
Attacker Value
Unknown

CVE-2008-6447

Disclosure Date: March 09, 2009 (last updated October 04, 2023)
Buffer overflow in emmailstore.dll 6.5.0.3 in the QuikSoft EasyMail MailStore ActiveX control allows remote attackers to execute arbitrary code via a long first argument to the CreateStore method.
0
Attacker Value
Unknown

CVE-2007-5070

Disclosure Date: September 24, 2007 (last updated October 04, 2023)
Heap-based buffer overflow in the EasyMailMessagePrinter ActiveX control in emprint.DLL 6.0.1.0 in the Quiksoft EasyMail MessagePrinter Object allows remote attackers to execute arbitrary code via a long string in the first argument to the SetFont method.
0
Attacker Value
Unknown

CVE-2007-4607

Disclosure Date: August 31, 2007 (last updated October 04, 2023)
Buffer overflow in the EasyMailSMTPObj ActiveX control in emsmtp.dll 6.0.1 in the Quiksoft EasyMail SMTP Object, as used in Postcast Server Pro 3.0.61 and other products, allows remote attackers to execute arbitrary code via a long argument to the SubmitToExpress method, a different vulnerability than CVE-2007-1029. NOTE: this may have been fixed in version 6.0.3.15.
0
Attacker Value
Unknown

CVE-2007-2915

Disclosure Date: May 30, 2007 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in RM EasyMail Plus allows remote attackers to inject arbitrary web script or HTML via the title field in an email.
0
Attacker Value
Unknown

CVE-2007-2802

Disclosure Date: May 22, 2007 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in cp/ps/Main/login/Login in RM EasyMail Plus allows remote attackers to inject arbitrary web script or HTML via the d parameter.
0
Attacker Value
Unknown

CVE-2007-1029

Disclosure Date: February 21, 2007 (last updated October 04, 2023)
Stack-based buffer overflow in the Connect method in the IMAP4 component in Quiksoft EasyMail Objects before 6.5 allows remote attackers to execute arbitrary code via a long host name.
0
Attacker Value
Unknown

CVE-2002-1415

Disclosure Date: April 11, 2003 (last updated February 22, 2025)
Format string vulnerability in SMTP service for WebEasyMail 3.4.2.2 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format strings in SMTP requests.
0