VendorsRumble Mail Server Projectrumble_mail_serverall versions
Vulnerabilities

Rumble Mail Server Project Rumble Mail Server

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2021-43456
An Unquoted Service Path vulnerablility exists in Rumble Mail Server 0.51.3135 via via a specially crafted file in the RumbleService executable service path.
Published 2022-04-04 · Modified
7.8EPSS 0.004
CVE-2021-43459
A Cross Site Scripting (XSS) vulnerability exists in Rumble Mail Server 0.51.3135 via the (1) domain and (2) path parameters.
Published 2022-04-04 · Modified
5.4EPSS 0.006
CVE-2021-43461
Cross Site Scripting (XSS) vulnerability exists in Rumble Mail Server 0.51.3135 via the servername parameter.
Published 2022-04-04 · Modified
5.4EPSS 0.006
CVE-2021-43462
A Cross Site Scripting (XSS) vulnerability exists in Rumble Mail Server 0.51.3135 via the username parameter.
Published 2022-04-04 · Modified
5.4EPSS 0.006