Mailenable Enterprise

Vendor:

First CVE: Dec 31, 2004 · Active for 21 years

30
Total CVEs
More Total CVEs than 96% of tracked products
6.0
Avg CVEs / Year
Higher CVE frequency than 90% of tracked products
7.2
Avg CVSS
Higher Avg CVSS than 44% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Mailenable Enterprise over time

Volume of CVEsAvg CVSS Base Score
First CVE
Dec 31, 2004
21 years ago
Most Recent CVE
Mar 10, 2008
6,710 days ago

CVE Severity & Scoring

Mailenable Enterprise30 CVEs
All CVEs352,294 CVEs
MediumHigh
Attack Vector
Local0 (0.0%)
Network0 (0.0%)
Unknown30 (100.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low0 (0.0%)
High0 (0.0%)
Unknown30 (100.0%)
User Interaction
None0 (0.0%)
Unknown30 (100.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None0 (0.0%)
Unknown30 (100.0%)

Top CVEs

Signals from CVEs in this product scope (30 CVEs).

30 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Stack-based buffer overflow in the IMAP service for MailEnable Professional and Enterprise Edition 2.0 through 2.35, Professional Edition 1.6 through 1.84, and Enterprise Edition 1
Dec 12, 200610.079NOYES
Buffer overflow in HTTPMail in MailEnable Enterprise 1.04 and earlier and Professional 1.54 and earlier allows remote attackers to execute arbitrary code via a long HTTP Authorizat
May 2, 20057.575NOYES
Buffer overflow in the W3C logging for MailEnable Enterprise 1.1 and Professional 1.6 allows remote attackers to execute arbitrary code.
Oct 5, 20057.571NOYES
The IMAP service (MEIMAPS.exe) in MailEnable Professional Edition and Enterprise Edition 3.13 and earlier allows remote attackers to cause a denial of service (crash) via (1) SEARC
Mar 10, 20089.039NOYES
Buffer overflow in the IMAP service of MailEnable Professional Edition 1.52 and Enterprise Edition 1.01 allows remote attackers to execute arbitrary code via (1) a long command str
Dec 31, 20047.539NOYES
Multiple buffer overflows in the IMAP service (MEIMAPS.EXE) in MailEnable Professional Edition and Enterprise Edition 3.13 and earlier allow remote authenticated attackers to execu
Mar 10, 20089.038NOYES
Stack-based buffer overflow in the IMAP service in MailEnable Enterprise and Professional Editions 2.37 and earlier allows remote authenticated users to execute arbitrary code via
Mar 7, 20079.038NOYES
The NTLM authentication in MailEnable Professional 2.0 and Enterprise 2.0 allows remote attackers to (1) execute arbitrary code via unspecified vectors involving crafted base64 enc
Oct 10, 20069.336NOYES
Multiple unspecified vulnerabilities in the SMTP service in MailEnable Standard Edition 1.x, Professional Edition 3.x and earlier, and Enterprise Edition 3.x and earlier allow remo
Mar 10, 20087.834NOYES
Multiple buffer overflows in MailEnable Professional 1.71 and Enterprise 1.1 before patch ME-10009 allow remote attackers to cause a denial of service (crash) and possibly execute
Dec 21, 20057.832NOYES

Exploit Exposure

Signals from CVEs in this product scope (30 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
3 CVEs
10.0% of CVEs· 97th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
14 CVEs
46.7% of CVEs· 91st percentile

Social Chatter

Signals from CVEs in this product scope (30 CVEs).

Media Mentions

Signals from CVEs in this product scope (30 CVEs).

Top CNAs Publishing CVEs For Mailenable Enterprise

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
2.35110.069.5%01
2.3415.03.0%00
2.3325.83.1%00
2.3225.83.1%00
2.3116.53.2%00
2.3016.53.2%00
2.2916.53.2%00
2.2816.53.2%00
2.2716.53.2%00
2.2616.53.2%00
2.2516.53.2%00
2.2416.53.2%00
2.2316.53.2%00
2.2216.53.2%00
2.2116.53.2%00
2.225.83.1%00
2.1916.53.2%00
2.1816.53.2%00
2.1716.53.2%00
2.1616.53.2%00