Madirish Webmail is a narrowly scoped email application whose vulnerability profile centers on code-injection weaknesses in its core webmail product. The durable signal reflects the application's role in handling user input and email processing, where improper code-generation controls represent a characteristic attack vector; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Madirish Webmail over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-2826HIGH PHP remote file inclusion vulnerability in lib/addressbook.php in Madirish Webmail 2.0 allows remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[basedir] param | May 22, 2007 | 7.5 | 29 | NO | YES |
CVE-2007-3058MEDIUM Multiple PHP remote file inclusion vulnerabilities in Madirish Webmail 2.0 allow remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[basedir] parameter to (1) c | Jun 6, 2007 | 6.8 | 19 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Madirish Webmail.
Media articles that mention a CVE ID that affects a product developed by Madirish Webmail — matched by CVE ID, not by vendor name.