Almail is a mail client application whose vulnerability profile centers on input-validation and path-traversal issues in its AL-Mail32 product. These are application-layer weaknesses typical of file-handling and message-processing functions; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Almail over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2015-0878MEDIUM Directory traversal vulnerability in CREAR AL-Mail32 before 1.13d allows remote attackers to write to arbitrary files via a crafted filename of an attachment. | Feb 20, 2015 | 5.8 | 20 | NO | NO |
CVE-2015-0879MEDIUM CREAR AL-Mail32 before 1.13d allows remote attackers to cause a denial of service (application crash) via a (1) CON, (2) AUX, or (3) NUL device name in the filename of an attachmen | Feb 20, 2015 | 4.3 | 17 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Almail.
Media articles that mention a CVE ID that affects a product developed by Almail — matched by CVE ID, not by vendor name.