Seattle Lab Software's vulnerability profile centers on a narrow portfolio of mail server and network utility products, including SLMail Pro, SLMail, and related remote-access tools that serve smaller deployments and legacy environments. The vendor's disclosures frequently acquire public exploit tooling, particularly around memory-handling and input-validation weaknesses characteristic of older mail and network software stacks. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Seattle Lab Software over time
Signals from CVEs in this vendor scope (12 CVEs).
12 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2003-0264HIGH Multiple buffer overflows in SLMail 5.1.0.4420 allows remote attackers to execute arbitrary code via (1) a long EHLO argument to slmail.exe, (2) a long XTRN argument to slmail.exe, | May 27, 2003 | 7.5 | 78 | NO | YES |
CVE-2008-1690HIGH WebContainer.exe 1.0.0.336 and earlier in SLMail Pro 6.3.1.0 and earlier allows remote attackers to cause a denial of service (memory corruption and daemon crash) or possibly execu | Apr 7, 2008 | 10.0 | 37 | NO | YES |
CVE-2004-0356HIGH Stack-based buffer overflow in Supervisor Report Center in SL Mail Pro 2.0.9 and earlier allows remote attackers to execute arbitrary code via an HTTP request with a long HTTP sub- | Nov 23, 2004 | 10.0 | 27 | NO | NO |
CVE-2004-0357HIGH Stack-based buffer overflows in SL Mail Pro 2.0.9 allow remote attackers to execute arbitrary code via (1) user.dll, (2) loadpageadmin.dll or (3) loadpageuser.dll. | Nov 23, 2004 | 10.0 | 26 | NO | NO |
CVE-2000-0397MEDIUM The EMURL web-based email account software encodes predictable identifiers in user session URLs, which allows a remote attacker to access a user's email account. | May 15, 2000 | 5.0 | 23 | NO | YES |
CVE-1999-0102HIGH Buffer overflow in SLmail 3.x allows attackers to execute commands using a large FROM line. | Jul 9, 1998 | 7.5 | 21 | NO | NO |
CVE-1999-1017HIGH Seattle Labs Emurl 2.0, and possibly earlier versions, stores e-mail attachments in a specific directory with scripting enabled, which allows a malicious ASP file attachment to exe | Jul 28, 1999 | 7.5 | 19 | NO | NO |
CVE-2008-0152MEDIUM SLnet.exe in SeattleLab SLNet RF Telnet Server 4.1.1.3758 and earlier allows user-assisted remote attackers to cause a denial of service (crash) via unspecified telnet options, whi | Jan 9, 2008 | 4.3 | 18 | NO | NO |
CVE-2008-1689MEDIUM Stack consumption vulnerability in WebContainer.exe 1.0.0.336 and earlier in SLMail Pro 6.3.1.0 and earlier allows remote attackers to cause a denial of service (daemon crash) via | Apr 7, 2008 | 5.0 | 15 | NO | NO |
CVE-2008-1691MEDIUM Unspecified vulnerability in SLMail.exe in SLMail Pro 6.3.1.0 and earlier allows remote attackers to cause a denial of service (UDP service outage) via a large packet to UDP port 5 | Apr 7, 2008 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (12 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Seattle Lab Software.
Media articles that mention a CVE ID that affects a product developed by Seattle Lab Software — matched by CVE ID, not by vendor name.