ciphermail CVE Vulnerabilities & CVE List (3)

Products (CPE): — CVEs: 3

ciphermail vulnerability overview

This page aggregates publicly disclosed CVE and security risk information related to ciphermail, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

Vulnerability distribution trend (last 24 months)

Showing 13 of 3 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2022-28218 An issue was discovered in CipherMail Webmail Messenger 1.1.1 through 4.1.4. A local attacker could access secret keys (found in a Roundcube configuration file) that are used to protect Webmail user passwords and two-factor authentication (2FA). [email protected] 5.5 0.05% 2022-04-26 2024-11-21
CVE-2020-12714 An issue was discovered in CipherMail Community Gateway Virtual Appliances and Professional/Enterprise Gateway Virtual Appliances versions 1.0.1 through 4.7.1-0 and CipherMail Webmail Messenger Virtual Appliances 1.1.1 through 3.1.1-0. A Diffie-Hellman parameter of insufficient size could allow man-in-the-middle compromise of communications between CipherMail products and external SMTP clients. [email protected] 5.9 0.24% 2020-06-11 2024-11-21
CVE-2020-12713 An issue was discovered in CipherMail Community Gateway and Professional/Enterprise Gateway 1.0.1 through 4.7.1-0 and CipherMail Webmail Messenger 1.1.1 through 3.1.1-0. Attackers with administrative access to the web interface have multiple options to escalate their privileges to the Unix root account. [email protected] 7.2 1.98% 2020-06-11 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence