Known Vulnerabilities for Neon Webmail by Neosys
Listed below are 6 of the newest known vulnerabilities associated with "Neon Webmail" by "Neosys".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2006-4956 json | Cross-site scripting (XSS) vulnerability in the updateuser servlet in Neon WebMail for Java before 5.08 allows remote attacke... | 6.8 - MEDIUM | 2006-09-23 | 2017-07-20 |
| CVE-2006-4955 json | Directory traversal vulnerability in the downloadfile servlet in Neon WebMail for Java before 5.08 allows remote attackers to... | 5 - MEDIUM | 2006-09-23 | 2017-07-20 |
| CVE-2006-4954 json | The updateuser servlet in Neon WebMail for Java before 5.08 does not validate the in_id parameter, which allows remote attack... | 7.5 - HIGH | 2006-09-23 | 2017-07-20 |
| CVE-2006-4953 json | Multiple SQL injection vulnerabilities in Neon WebMail for Java before 5.08 allow remote attackers to execute arbitrary SQL c... | 7.5 - HIGH | 2006-09-23 | 2017-07-20 |
| CVE-2006-4952 json | The updatemail servlet in Neon WebMail for Java before 5.08 allows remote attackers to move e-mail messages of arbitrary user... | 7.5 - HIGH | 2006-09-23 | 2017-07-20 |
| CVE-2006-4951 json | Neon WebMail for Java before 5.08 allows remote attackers to execute arbitrary Java (JSP) code by sending an e-mail message w... | 7.5 - HIGH | 2006-09-23 | 2017-07-20 |