Vulnerabilities (CVE)

Filtered by vendor Postfix Admin Project Subscribe
Filtered by product Postfix Admin
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2012-0812 2 Debian, Postfix Admin Project 2 Debian Linux, Postfix Admin 2024-02-04 4.3 MEDIUM 6.1 MEDIUM
PostfixAdmin 2.3.4 has multiple XSS vulnerabilities
CVE-2014-2655 1 Postfix Admin Project 1 Postfix Admin 2024-02-04 6.5 MEDIUM N/A
SQL injection vulnerability in the gen_show_status function in functions.inc.php in Postfix Admin (aka postfixadmin) before 2.3.7 allows remote authenticated users to execute arbitrary SQL commands via a new alias.