Acmailer is a narrowly scoped email management application with vulnerabilities concentrated in its core product and database components, where the recurring pattern centers on improper privilege management. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Acmailer over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-20617CRITICAL Improper access control vulnerability in acmailer ver. 4.0.1 and earlier, and acmailer DB ver. 1.1.3 and earlier allows remote attackers to execute an arbitrary OS command, or gain | Jan 14, 2021 | 9.8 | 44 | NO | YES |
CVE-2021-20618CRITICAL Privilege chaining vulnerability in acmailer ver. 4.0.2 and earlier, and acmailer DB ver. 1.1.4 and earlier allows remote attackers to bypass authentication and to gain an administ | Jan 14, 2021 | 9.8 | 30 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Acmailer.
Media articles that mention a CVE ID that affects a product developed by Acmailer — matched by CVE ID, not by vendor name.