Foxmail is an email server and client product suite with a concentrated vulnerability footprint around its core messaging components and memory-handling operations. The durable signal in disclosed vulnerabilities centers on buffer-boundary violations and related memory-safety issues that are characteristic of email processing systems. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Foxmail over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2005-0339HIGH Buffer overflow in Foxmail 2.0 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long MAIL FROM command. | May 2, 2005 | 10.0 | 38 | NO | YES |
CVE-2005-0635HIGH Buffer overflow in Foxmail Server 2.0 allows remote attackers to execute arbitrary code via a long USER command. | May 2, 2005 | 10.0 | 38 | NO | YES |
CVE-2005-0636HIGH Format string vulnerability in Foxmail Server 2.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format strings in the USER co | Mar 2, 2005 | 10.0 | 37 | NO | YES |
CVE-2008-5839HIGH Buffer overflow in Foxmail 6.5 allows remote attackers to execute arbitrary code via a long mailto URI in the HREF attribute of an A element. | Jan 5, 2009 | 9.3 | 35 | NO | YES |
CVE-2004-2719MEDIUM Buffer overflow in the UrlToLocal function in PunyLib.dll of Foxmail 5.0.300 allows remote attackers to execute arbitrary code via a mail message with a long From field, a differen | Dec 31, 2004 | 6.8 | 29 | NO | YES |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Foxmail.
Media articles that mention a CVE ID that affects a product developed by Foxmail — matched by CVE ID, not by vendor name.