CVE-2017-9518
atmail before 7.8.0.2 has CSRF, allowing an attacker to change the SMTP hostname and hijack all emails.
Read Moreatmail before 7.8.0.2 has CSRF, allowing an attacker to change the SMTP hostname and hijack all emails.
Read MoreThe r_config_set function in libr/config/config.c in radare2 1.5.0 allows remote attackers to cause a denial of service (use-after-free and application crash) via a crafted DEX file.
Read Moreatmail before 7.8.0.2 has CSRF, allowing an attacker to upload and import users via CSV.
Read Moreatmail before 7.8.0.2 has CSRF, allowing an attacker to create a user account.
Read MoreNet Monitor for Employees Pro through 5.3.4 has an unquoted service path, which allows a Security Feature Bypass of its documented “Block applications” design goal. The local attacker must have privileges to write to...
Read More