Known Vulnerabilities for Totemomail by Totemo
Listed below are 5 of the newest known vulnerabilities associated with "Totemomail" by "Totemo".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-7918 json | An insecure direct object reference in webmail in totemo totemomail 7.0.0 allows an authenticated remote user to read and mod... | 5.4 - MEDIUM | 2020-03-27 | 2020-03-31 |
| CVE-2018-15513 json | Log viewer in totemomail 6.0.0 build 570 allows access to sessionIDs of high privileged users by leveraging access to a read-... | 5.3 - MEDIUM | 2019-08-30 | 2019-09-03 |
| CVE-2018-15512 json | Cross-site scripting (XSS) vulnerability in the 'Authorisation Service' feature of totemomail 6.0.0 build 570 allows remote a... | 6.1 - MEDIUM | 2019-08-30 | 2019-09-03 |
| CVE-2018-15511 json | Cross-site scripting (XSS) vulnerability in the 'Notification template' feature of totemomail 6.0.0 build 570 allows remote a... | 6.1 - MEDIUM | 2019-08-30 | 2019-09-03 |
| CVE-2018-15510 json | Cross-site scripting (XSS) vulnerability in the 'Certificate' feature of totemomail 6.0.0 build 570 allows remote attackers t... | 6.1 - MEDIUM | 2019-08-30 | 2019-09-03 |