Netmail
Vendor:
First CVE: Oct 4, 2002 · Active for 23 years
17
Total CVEs
More Total CVEs than 94% of tracked products
3.4
Avg CVEs / Year
Higher CVE frequency than 84% of tracked products
6.5
Avg CVSS
Higher Avg CVSS than 33% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Netmail over time
Volume of CVEsAvg CVSS Base Score
First CVE
Oct 4, 2002
23 years ago
Most Recent CVE
Dec 10, 2007
6,805 days ago
CVE Severity & Scoring
Netmail17 CVEs
53%
41%
All CVEs353,240 CVEs
45%
40%
11%
LowMediumHigh
Attack Vector
Local0 (0.0%)
Network0 (0.0%)
Unknown17 (100.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low0 (0.0%)
High0 (0.0%)
Unknown17 (100.0%)
User Interaction
None0 (0.0%)
Unknown17 (100.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None0 (0.0%)
Unknown17 (100.0%)
Top CVEs
Signals from CVEs in this product scope (17 CVEs).
17 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2006-6424HIGH Multiple buffer overflows in Novell NetMail before 3.52e FTF2 allow remote attackers to execute arbitrary code (1) by appending literals to certain IMAP verbs when specifying comma | Dec 27, 2006 | 9.0 | 73 | NO | YES |
CVE-2006-6425HIGH Stack-based buffer overflow in the IMAP daemon (IMAPD) in Novell NetMail before 3.52e FTF2 allows remote authenticated users to execute arbitrary code via unspecified vectors invol | Dec 27, 2006 | 9.0 | 72 | NO | YES |
CVE-2005-3314HIGH Stack-based buffer overflow in the IMAP daemon in Novell Netmail 3.5.2 allows remote attackers to execute arbitrary code via "long verb arguments." | Nov 18, 2005 | 7.5 | 72 | NO | YES |
CVE-2006-6761MEDIUM Stack-based buffer overflow in the IMAP daemon (IMAPD) in Novell NetMail before 3.52e FTF2 allows remote authenticated users to execute arbitrary code via a long argument to the SU | Dec 27, 2006 | 6.5 | 63 | NO | YES |
CVE-2005-1758HIGH Buffer overflow in the IMAP command continuation function in Novell NetMail 3.52 before 3.52C may allow remote attackers to execute arbitrary code. | Jun 8, 2005 | 7.5 | 36 | NO | YES |
CVE-2007-1350MEDIUM Stack-based buffer overflow in webadmin.exe in Novell NetMail 3.5.2 allows remote attackers to execute arbitrary code via a long username during HTTP Basic authentication. | Mar 8, 2007 | 6.8 | 28 | NO | NO |
CVE-2007-2616HIGH Stack-based buffer overflow in the SSL version of the NMDMC.EXE service in Novell NetMail 3.52e FTF2 and probably earlier allows remote attackers to execute arbitrary code via a cr | May 11, 2007 | 10.0 | 27 | NO | NO |
CVE-2005-2176MEDIUM Novell NetMail automatically processes HTML in an attachment without prompting the user to save or open it, which makes it easier for remote attackers to conduct web-based attacks | Jul 9, 2005 | 6.4 | 26 | NO | YES |
CVE-2002-0996HIGH Multiple buffer overflows in Novell NetMail (NIMS) 3.0.3 before 3.0.3C allows remote attackers to cause a denial of service and possibly execute arbitrary code via (1) WebAdmin or | Oct 4, 2002 | 7.5 | 25 | NO | NO |
CVE-2007-6302MEDIUM Multiple heap-based buffer overflows in avirus.exe in Novell NetMail 3.5.2 before Messaging Architects M+NetMail 3.52f (aka 3.5.2F) allows remote attackers to execute arbitrary cod | Dec 10, 2007 | 6.8 | 20 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (17 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
5 CVEs
29.4% of CVEs· 98th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
5 CVEs
29.4% of CVEs· 88th percentile
Social Chatter
Signals from CVEs in this product scope (17 CVEs).
Media Mentions
Signals from CVEs in this product scope (17 CVEs).
Top CNAs Publishing CVEs For Netmail
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 3.52e | 1 | 10.0 | 6.0% | 0 | 0 |
| 3.52d | 1 | 10.0 | 6.0% | 0 | 0 |
| 3.52c1 | 1 | 10.0 | 6.0% | 0 | 0 |
| 3.52c | 1 | 10.0 | 6.0% | 0 | 0 |
| 3.52b | 1 | 10.0 | 6.0% | 0 | 0 |
| 3.52a | 1 | 10.0 | 6.0% | 0 | 0 |
| 3.5.2 | 11 | 5.8 | 14.6% | 0 | 4 |
| 3.52 | 1 | 10.0 | 6.0% | 0 | 0 |
| 3.5 | 3 | 8.1 | 39.6% | 0 | 2 |
| 3.10 | 6 | 7.3 | 23.7% | 0 | 4 |
| 3.1 | 9 | 7.1 | 19.4% | 0 | 4 |
| 3.0.3a | 8 | 7.1 | 20.7% | 0 | 4 |
| 3.0.1 | 3 | 8.1 | 40.3% | 0 | 3 |