IceWarp, Ltd.

Short Name: IceWarp
Previous Names: [None Entered]
URL: http://www.icewarp.com/ [visit link]
Email: infoicewarp.com
Security URL: [None Entered]
Security Email: [None Entered]
Knowledge Base: [None Entered]
Notes: [No Notes]

Vulnerabilities by Vendor Product

IceWarp, Ltd.

IceWarp, Ltd.
IceWarp Watch-list
3.5.0
OSVDB ID: 8541 IceWarp WebMail Arbitrary Folder/File Manipulation
Merak Email Server Watch-list
2.10.250
OSVDB ID: 8545 IceWarp Mail Server Mailbox Path Issue
OSVDB ID: 8546 IceWarp Merak Mail Server Domain Admin Index Issue
2.10.280
OSVDB ID: 8547 IceWarp WebMail Web Admin User Password Disclosure
2.10.360
OSVDB ID: 8548 IceWarp Mail Server Auto Responder File Path Issue
4.10.040
OSVDB ID: 8549 IceWarp Merak Mail Server XSTAT Text Command Unspecified Issue
5.1.2
OSVDB ID: 8550 IceWarp Merak Mail Server Domain Admin/ODBC accountlist Issue
5.3.0
OSVDB ID: 8551 IceWarp WebMail EmailLogin Issue
6.0.7
OSVDB ID: 8552 IceWarp WebMail WebAdmin autoresp.html Unspecified Issue
Merak Mail Server Watch-list
7.6.0
OSVDB ID: 11565 IceWarp WebMail Account Password Storage Weak Encryption
7.5.2
OSVDB ID: 11565 IceWarp WebMail Account Password Storage Weak Encryption
OSVDB ID: 11564 IceWarp WebMail folders.html Arbitrary File/Directory Rename
OSVDB ID: 11563 IceWarp WebMail viewaction.html Arbitrary File Manipulation/Deletion
OSVDB ID: 11561 IceWarp WebMail viewaction.html Arbitrary Directory Creation
OSVDB ID: 11560 IceWarp WebMail folderitem.html folderold Parameter XSS
OSVDB ID: 11559 IceWarp WebMail attachment.html Multiple Parameter XSS
OSVDB ID: 11558 IceWarp WebMail send.html Multiple Parameter XSS
7.6.4r
OSVDB ID: 11565 IceWarp WebMail Account Password Storage Weak Encryption
8.4.2r
OSVDB ID: 19831 IceWarp WebMail help.html Traversal Arbitrary File Access
OSVDB ID: 19830 IceWarp WebMail logout.html Traversal Arbitrary File/Directory Deletion
OSVDB ID: 19829 IceWarp WebMail bwlist_inc.html Direct Request Path Disclosure
OSVDB ID: 19828 IceWarp WebMail calendar_w.html createdataCX Parameter XSS
OSVDB ID: 19827 IceWarp WebMail calendar_m.html createdataCX Parameter XSS
OSVDB ID: 19826 IceWarp WebMail calendar_d.html createdataCX Parameter XSS
OSVDB ID: 19825 IceWarp WebMail blank.html id Parameter XSS
8.3.8
OSVDB ID: 27328 IceWarp WebMail accounts/inc/include.php language Parameter Traversal Local File Inclusion
IceWarp Merak Mail Server Watch-list
9.4.1
OSVDB ID: 54213 IceWarp Merak Mail Server IceWarpServer.APIObject ActiveX (api.dll) Base64FileEncode Method Overflow
IceWarp Server Watch-list
10.2
OSVDB ID: 69688 IceWarp Server webmail/basic/index.html _c Parameter Traversal Arbitrary File Access
OSVDB ID: 69690 IceWarp Server webmail/basic/ Multiple Parameter XSS
OSVDB ID: 69691 IceWarp Server admin/login.html username Parameter XSS
OSVDB ID: 69689 IceWarp Server webmail/basic/minimizer/index.php script Parameter Traversal Arbitrary File Access
OSVDB ID: 72131 IceWarp Server webmail/index.html Multiple Parameter XSS
OSVDB ID: 72132 IceWarp Server install/index.html lang Parameter XSS
10.2.x
10.2.x
10.2.1
OSVDB ID: 72131 IceWarp Server webmail/index.html Multiple Parameter XSS
OSVDB ID: 72132 IceWarp Server install/index.html lang Parameter XSS
10.2.2
OSVDB ID: 72131 IceWarp Server webmail/index.html Multiple Parameter XSS
OSVDB ID: 72132 IceWarp Server install/index.html lang Parameter XSS
Web Mail Watch-list
5.2.7
OSVDB ID: 8527 IceWarp WebMail foldertree HTML Validation Issue
OSVDB ID: 8528 IceWarp WebMail writemail Shortcuts Unspecified Issue
OSVDB ID: 8529 IceWarp WebMail calendar/note/modify Unspecified Issue
OSVDB ID: 8530 IceWarp WebMail getusersession Unspecified Issue
OSVDB ID: 8531 IceWarp WebMail Arbitrary Directory Creation
OSVDB ID: 8532 IceWarp WebMail Path Disclosure
OSVDB ID: 8533 IceWarp WebMail Arbitrary Attachment Access
OSVDB ID: 8534 IceWarp WebMail Arbitrary File Deletion
OSVDB ID: 8535 IceWarp WebMail Arbitrary Unauthenticated File/Directory Moving
OSVDB ID: 8536 IceWarp WebMail Arbitrary File/Directory Rename
OSVDB ID: 8537 IceWarp WebMail Unspecified SQL Injection
OSVDB ID: 8538 IceWarp WebMail calendar.html Multiple Parameter XSS
OSVDB ID: 8539 IceWarp WebMail No Session ID Multiple Module Execution
OSVDB ID: 10673 IceWarp WebMail view.html File View Unspecified Issue
4.2.2
OSVDB ID: 8526 IceWarp WebMail Static Session ID Arbitrary Account Hijack
5.2.8
OSVDB ID: 10673 IceWarp WebMail view.html File View Unspecified Issue
5.2.5
OSVDB ID: 10673 IceWarp WebMail view.html File View Unspecified Issue
5.2.4
OSVDB ID: 10673 IceWarp WebMail view.html File View Unspecified Issue
5.2.3
OSVDB ID: 10673 IceWarp WebMail view.html File View Unspecified Issue
5.2.2
OSVDB ID: 10673 IceWarp WebMail view.html File View Unspecified Issue
5.2.1
OSVDB ID: 10673 IceWarp WebMail view.html File View Unspecified Issue
5.6.0
OSVDB ID: 27328 IceWarp WebMail accounts/inc/include.php language Parameter Traversal Local File Inclusion
IceWarp Mail Server Watch-list
10.4.3
OSVDB ID: 85498 IceWarp Mail Server WebMail Component webmail/pda/controller/raw.php phpinfo() Function PHP Configuration Information Disclosure
IceWarp Web Mail Watch-list
3.4.1
OSVDB ID: 8542 IceWarp WebMail selfaction.html Unspecified Issue
3.4.5
OSVDB ID: 8543 IceWarp WebMail Address Book Full Name Parameter XSS
3.3.3
OSVDB ID: 8543 IceWarp WebMail Address Book Full Name Parameter XSS
4.1.4
OSVDB ID: 8540 IceWarp WebMail IP Address Checking Unspecified Issue
1.40.00
OSVDB ID: 8544 IceWarp Web Mail Unspecified Login Issue
5.2.0
OSVDB ID: 10674 IceWarp WebMail Multiple Unspecified XSS
5.3.0
OSVDB ID: 11565 IceWarp WebMail Account Password Storage Weak Encryption
5.2.8
OSVDB ID: 11565 IceWarp WebMail Account Password Storage Weak Encryption
OSVDB ID: 11564 IceWarp WebMail folders.html Arbitrary File/Directory Rename
OSVDB ID: 11563 IceWarp WebMail viewaction.html Arbitrary File Manipulation/Deletion
OSVDB ID: 11561 IceWarp WebMail viewaction.html Arbitrary Directory Creation
OSVDB ID: 11560 IceWarp WebMail folderitem.html folderold Parameter XSS
OSVDB ID: 11559 IceWarp WebMail attachment.html Multiple Parameter XSS
OSVDB ID: 11558 IceWarp WebMail send.html Multiple Parameter XSS
5.3.2
OSVDB ID: 11565 IceWarp WebMail Account Password Storage Weak Encryption
5.5.1
OSVDB ID: 19831 IceWarp WebMail help.html Traversal Arbitrary File Access
OSVDB ID: 19830 IceWarp WebMail logout.html Traversal Arbitrary File/Directory Deletion
OSVDB ID: 19829 IceWarp WebMail bwlist_inc.html Direct Request Path Disclosure
OSVDB ID: 19828 IceWarp WebMail calendar_w.html createdataCX Parameter XSS
OSVDB ID: 19827 IceWarp WebMail calendar_m.html createdataCX Parameter XSS
OSVDB ID: 19826 IceWarp WebMail calendar_d.html createdataCX Parameter XSS
OSVDB ID: 19825 IceWarp WebMail blank.html id Parameter XSS



The database information may change without any notice. Use of the information constitutes acceptance for use in an AS IS condition, and there are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the copyright holder or distributor (OSVDB or OSF) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.

© Copyright 2002 - 2014 Open Sourced Vulnerability Database (OSVDB), All Rights Reserved.
License - Privacy Statement - Terms of Use