FreddleSpl0it
8 exploits
Active since Jul 2022
mailcow <2022-06a - Privilege Escalation
CVSS 8.8
mailcow <2024-01c - Info Disclosure
CVSS 8.8
mailcow < 2024-07 - Authenticated Two-Factor Authentication Bypass
CVSS 6.6
mailcow - Authenticated Dovecot Variable Injection via Crafted Password
CVSS 8.8
mailcow < 2024-01 - Denial of Service via Pixel Flood Attack
CVSS 4.7
mailcow < 2024-07 - Unauthenticated Stored Cross-Site Scripting via API Log Injection
CVSS 7.6
mailcow < 2024-07 - Authenticated Stored Cross-Site Scripting via Relay Hosts Configuration
CVSS 3.8
mailcow: dockerized <2025-07 - SSTI
CVSS 9.1