VendorsAltnsecurity_gateway_for_email_servers8.5.2
Vulnerabilities

Altn (MDaemon Technologies) Security Gateway for Email Servers 8.5.2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

8CVEs
CVE-2022-37240
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to HTTP Response splitting via the format parameter.
Published 2022-08-25 · Modified
9.8EPSS 0.014
CVE-2022-37242
MDaemon Technologies SecurityGateway for Email Servers 8.5.2, is vulnerable to HTTP Response splitting via the data parameter.
Published 2022-08-25 · Modified
9.8EPSS 0.014
CVE-2022-37239
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to Cross Site Scripting (XSS) via the rulles_list_ajax endpoint.
Published 2022-08-25 · Modified
5.4EPSS 0.006
CVE-2022-37241
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to Cross Site Scripting (XSS) via the data_leak_list_ajax endpoint.
Published 2022-08-25 · Modified
5.4EPSS 0.006
CVE-2022-37243
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to Cross Site Scripting (XSS) via the whitelist endpoint.
Published 2022-08-25 · Modified
5.4EPSS 0.006
CVE-2022-37245
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to Cross Site Scripting (XSS) via the Blacklist endpoint.
Published 2022-08-25 · Modified
5.4EPSS 0.006
CVE-2022-37238
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to Cross Site Scripting (XSS) via the currentRequest parameter.
Published 2022-08-25 · Modified
5.4EPSS 0.005
CVE-2022-37244
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to IFRAME Injectionvia the currentRequest parameter. after login leads to inject malicious tag leads to IFRAME injection.
Published 2022-08-25 · Modified
5.4EPSS 0.005