Deutsche Post's vulnerability footprint centers on Stampit Web, a web-based postal and shipping platform. Reported weaknesses align with application-layer input and validation handling issues typical of web-facing business applications. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Deutsche Post over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-28042HIGH Deutsche Post Mailoptimizer 4.3 before 2020-11-09 allows Directory Traversal via a crafted ZIP archive to the Upload feature or the MO Connect component. This can lead to remote co | Mar 5, 2021 | 7.8 | 26 | NO | NO |
CVE-2007-3871MEDIUM Stampit Web uses guessable id values for online stamp purchases, which allows remote attackers to cause a denial of service (stamp invalidation) via a SOAP request with an id value | Sep 12, 2007 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Deutsche Post.
Media articles that mention a CVE ID that affects a product developed by Deutsche Post — matched by CVE ID, not by vendor name.