Known Vulnerabilities for products from Hastymail
Listed below are 7 of the newest known vulnerabilities associated with the vendor "Hastymail".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2011-4542 json | Hastymail2 2.1.1 before RC2 allows remote attackers to execute arbitrary commands via the (1) rs or (2) rsargs[] parameter in... | Not Provided | 2011-11-30 | 2026-04-29 |
| CVE-2011-4541 json | Cross-site scripting (XSS) vulnerability in index.php in Hastymail2 2.1.1 before RC2 allows remote attackers to inject arbitr... | Not Provided | 2011-11-29 | 2026-04-29 |
| CVE-2010-4646 json | Cross-site scripting (XSS) vulnerability in Hastymail2 before 1.01 allows remote attackers to inject arbitrary web script or ... | Not Provided | 2011-01-18 | 2026-04-29 |
| CVE-2009-5051 json | Hastymail2 before RC 8 does not set the secure flag for the session cookie in an https session, which makes it easier for rem... | Not Provided | 2011-01-18 | 2026-04-29 |
| CVE-2006-5313 json | Hastymail 1.5 and earlier before 20061008 allows remote authenticated users to send arbitrary SMTP commands by placing them a... | Not Provided | 2006-10-17 | 2026-04-23 |
| CVE-2006-5262 json | CRLF injection vulnerability in lib/session.php in Hastymail 1.5 and earlier before 20061008 allows remote authenticated user... | Not Provided | 2006-10-12 | 2026-04-23 |
| CVE-2004-2704 json | Hastymail 1.0.1 and earlier (stable) and 1.1 and earlier (development) does not send the "attachment" parameter in the Conten... | Not Provided | 2004-12-31 | 2025-04-03 |