chudyPB
4 exploits
Active since Apr 2021
MDaemon < 20.0.4 - Reflected Cross-Site Scripting in Webmail via GET Request
MDaemon < 20.0.4 - Cross-Site Request Forgery via Anti-CSRF Token Fixation
CVSS 8.8
MDaemon < 20.0.4 - IFRAME Injection in Webmail via Email Message
CVSS 8.8
MDaemon < 20.0.4 - Authenticated Arbitrary File Write via Remote Administration
CVSS 7.2