endymion 相關的公開 CVE 漏洞與安全風險資訊,提供 CVSS、EPSS、公開時間與漏洞情報資料,協助評估潛在風險與修補優先順序。
| CVE | 摘要 | 來源 | 最高 CVSS | EPSS % | 公開時間 | 更新時間 |
|---|---|---|---|---|---|---|
| CVE-2002-0418 | Directory traversal vulnerability in the com.endymion.sake.servlet.mail.MailServlet servlet for Endymion SakeMail 1.0.36 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) and a null character in the param_name parameter. | [email protected] | 5.0 | 2.20% | 2002-08-12 | 2026-06-16 |
| CVE-2002-0417 | Directory traversal vulnerability in Endymion MailMan before 3.1 allows remote attackers to read arbitrary files via a .. (dot dot) and a null character in the ALTERNATE_TEMPLATES parameter for various mmstdo*.cgi programs. | [email protected] | 5.0 | 2.17% | 2002-08-12 | 2026-06-16 |
| CVE-2001-0021 | MailMan Webmail 3.0.25 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the alternate_template parameter. | [email protected] | 10.0 | 13.46% | 2001-02-16 | 2026-06-16 |
| CVE-1999-0850 | The default permissions for Endymion MailMan allow local users to read email or modify files. | [email protected] | 3.6 | 0.33% | 1999-12-02 | 2026-06-16 |