VendorsMailEnablemailenable_standardall versions
Vulnerabilities

MailEnable Mailenable Standard

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

7CVEs
CVE-2006-6605
Stack-based buffer overflow in the POP service in MailEnable Standard 1.98 and earlier; Professional 1.84, and 2.35 and earlier; and Enterprise 1.41, and 2.35 and earlier before ME-10026 allows remote attackers to execute arbitrary code via a long argument to the PASS command.
Published 2006-12-19 · Modified
10.0EPSS 0.059
CVE-2006-1792
Unspecified vulnerability in the POP service in MailEnable Standard Edition before 1.94, Professional Edition before 1.74, and Enterprise Edition before 1.22 has unknown attack vectors and impact related to "authentication exploits". NOTE: this is a different set of affected versions, and probably a different vulnerability than CVE-2006-1337.
Published 2006-04-15 · Modified
10.0EPSS 0.019
CVE-2006-6997
Unspecified vulnerability in a cryptographic feature in MailEnable Standard Edition before 1.93, Professional Edition before 1.73, and Enterprise Edition before 1.21 leads to "weakened authentication security" with unknown impact and attack vectors. NOTE: due to lack of details, it is not clear whether this is the same as CVE-2006-1792.
Published 2007-02-12 · Modified
10.0EPSS 0.018
CVE-2008-1275
Multiple unspecified vulnerabilities in the SMTP service in MailEnable Standard Edition 1.x, Professional Edition 3.x and earlier, and Enterprise Edition 3.x and earlier allow remote attackers to cause a denial of service (crash) via crafted (1) EXPN or (2) VRFY commands.
Published 2008-03-10 · Modified
7.81 PoCEPSS 0.040
CVE-2005-2223
Unknown vulnerability in the SMTP service in MailEnable Standard before 1.9 and Professional before 1.6 allows remote attackers to cause a denial of service (crash) during authentication.
Published 2005-07-12 · Modified
5.0EPSS 0.508
CVE-2005-0804
Format string vulnerability in MailEnable 1.8 allows remote attackers to cause a denial of service (application crash) via format string specifiers in the mailto field.
Published 2005-03-20 · Modified
5.01 PoCEPSS 0.042
CVE-2006-4616
SMTP service in MailEnable Standard, Professional, and Enterprise before ME-10014 (20060904) allows remote attackers to cause a denial of service via an SPF lookup for a domain with a large number of records, which triggers a null pointer exception.
Published 2006-09-07 · Modified
5.0EPSS 0.035