pineapp CVE Vulnerabilities & CVE List (7)

Products (CPE): — CVEs: 7

pineapp vulnerability overview

Aggregates CVE and security vulnerability intelligence across all pineapp-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Common weakness patterns include vendor risk cross-site scripting and vendor risk path handling, with potential vendor impact file overwrite and vendor impact session compromise across vendor surface software deployment use cases.

Vulnerability distribution trend (last 24 months)

Showing 17 of 7 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2021-36720 PineApp - Mail Secure - Attacker sending a request to :/blocking.php?url=<script>alert(1)</script> and stealing cookies . [email protected] 6.1 0.56% 2021-12-08 2026-06-16
CVE-2013-6831 PineApp Mail-SeCure 3.70 and earlier on 5099SK and earlier platforms has a sudoers file that does not properly restrict user specifications, which allows local users to gain privileges via a sudo command that leverages access to the qmailq account. [email protected] 7.2 1.01% 2013-11-20 2026-06-16
CVE-2013-6830 admin/confnetworking.html in PineApp Mail-SeCure 3.70 and earlier on 5099SK and earlier platforms allows remote attackers to execute arbitrary commands via shell metacharacters in the nsserver parameter during an nslookup operation. [email protected] 7.5 8.93% 2013-11-20 2026-06-16
CVE-2013-6829 admin/confnetworking.html in PineApp Mail-SeCure allows remote attackers to execute arbitrary commands via shell metacharacters in the pinghost parameter during a ping operation. [email protected] 7.5 78.34% 2013-11-20 2026-06-16
CVE-2013-6828 admin/management.html in PineApp Mail-SeCure allows remote attackers to bypass authentication and perform a sys_usermng operation via the it parameter. [email protected] 6.4 1.34% 2013-11-20 2026-06-16
CVE-2013-6827 Absolute path traversal vulnerability in admin/viewmsg.php in PineApp Mail-SeCure allows remote attackers to read arbitrary files via a full pathname in the msg parameter. [email protected] 5.0 1.44% 2013-11-20 2026-06-16
CVE-2013-4987 PineApp Mail-SeCure before 3.70 allows remote authenticated users to gain privileges by leveraging console access and providing shell metacharacters in a "system ping" command. [email protected] 8.5 2.99% 2013-11-07 2026-06-16
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence