Deutschepost's vulnerability footprint centers on a narrow range of postal and mail-management software products, including MailOptimizer and StampIt Web, which serve administrative and logistics workflows. The observed exposure signals cluster around path-traversal weaknesses, reflecting input-handling challenges common to file-access and directory-manipulation operations in these applications. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Deutschepost over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-28042HIGH Deutsche Post Mailoptimizer 4.3 before 2020-11-09 allows Directory Traversal via a crafted ZIP archive to the Upload feature or the MO Connect component. This can lead to remote co | Mar 5, 2021 | 7.8 | 26 | NO | NO |
CVE-2007-3871MEDIUM Stampit Web uses guessable id values for online stamp purchases, which allows remote attackers to cause a denial of service (stamp invalidation) via a SOAP request with an id value | Sep 12, 2007 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Deutschepost.
Media articles that mention a CVE ID that affects a product developed by Deutschepost — matched by CVE ID, not by vendor name.