Show filters
11 Total Results
Displaying 1-10 of 11
Sort by:
Attacker Value
Unknown
CVE-2023-22333
Disclosure Date: January 30, 2023 (last updated October 08, 2023)
Cross-site scripting vulnerability in EasyMail 2.00.130 and earlier allows a remote unauthenticated attacker to inject an arbitrary script.
0
Attacker Value
Unknown
CVE-2015-9409
Disclosure Date: September 25, 2019 (last updated November 27, 2024)
The alo-easymail plugin before 2.6.01 for WordPress has CSRF with resultant XSS in pages/alo-easymail-admin-options.php.
0
Attacker Value
Unknown
CVE-2009-4663
Disclosure Date: March 03, 2010 (last updated October 04, 2023)
Heap-based buffer overflow in the Quiksoft EasyMail Objects 6 ActiveX control allows remote attackers to execute arbitrary code via a long argument to the AddAttachment method.
0
Attacker Value
Unknown
CVE-2008-6447
Disclosure Date: March 09, 2009 (last updated October 04, 2023)
Buffer overflow in emmailstore.dll 6.5.0.3 in the QuikSoft EasyMail MailStore ActiveX control allows remote attackers to execute arbitrary code via a long first argument to the CreateStore method.
0
Attacker Value
Unknown
CVE-2007-5070
Disclosure Date: September 24, 2007 (last updated October 04, 2023)
Heap-based buffer overflow in the EasyMailMessagePrinter ActiveX control in emprint.DLL 6.0.1.0 in the Quiksoft EasyMail MessagePrinter Object allows remote attackers to execute arbitrary code via a long string in the first argument to the SetFont method.
0
Attacker Value
Unknown
CVE-2007-4607
Disclosure Date: August 31, 2007 (last updated October 04, 2023)
Buffer overflow in the EasyMailSMTPObj ActiveX control in emsmtp.dll 6.0.1 in the Quiksoft EasyMail SMTP Object, as used in Postcast Server Pro 3.0.61 and other products, allows remote attackers to execute arbitrary code via a long argument to the SubmitToExpress method, a different vulnerability than CVE-2007-1029. NOTE: this may have been fixed in version 6.0.3.15.
0
Attacker Value
Unknown
CVE-2007-2915
Disclosure Date: May 30, 2007 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in RM EasyMail Plus allows remote attackers to inject arbitrary web script or HTML via the title field in an email.
0
Attacker Value
Unknown
CVE-2007-2802
Disclosure Date: May 22, 2007 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in cp/ps/Main/login/Login in RM EasyMail Plus allows remote attackers to inject arbitrary web script or HTML via the d parameter.
0
Attacker Value
Unknown
CVE-2007-1029
Disclosure Date: February 21, 2007 (last updated October 04, 2023)
Stack-based buffer overflow in the Connect method in the IMAP4 component in Quiksoft EasyMail Objects before 6.5 allows remote attackers to execute arbitrary code via a long host name.
0
Attacker Value
Unknown
CVE-2002-1415
Disclosure Date: April 11, 2003 (last updated February 22, 2025)
Format string vulnerability in SMTP service for WebEasyMail 3.4.2.2 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format strings in SMTP requests.
0