Netqmail is a lightweight, security-focused mail server implementation with a narrow product scope that occupies a specialized niche in infrastructure deployments where mail handling security is a concern. Its observed vulnerabilities cluster around improper initialization, privilege management, and authorization logic, reflecting the access-control and state-setup demands inherent to mail processing software; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Netqmail over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-3811HIGH qmail-verify as used in netqmail 1.06 is prone to a mail-address verification bypass vulnerability. | May 26, 2020 | 7.5 | 26 | NO | NO |
CVE-2020-3812MEDIUM qmail-verify as used in netqmail 1.06 is prone to an information disclosure vulnerability. A local attacker can test for the existence of files and directories anywhere in the file | May 26, 2020 | 5.5 | 21 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Netqmail.
Media articles that mention a CVE ID that affects a product developed by Netqmail — matched by CVE ID, not by vendor name.