CVE Feed

    Dashboard / CVE / CVE-2019-12926

    CVE-2019-12926

    MailEnable Enterprise Premium 10.23 did not use appropriate access control checks in a number of areas. As a result, it was possible to perform a number of actions, when logged in as a user, that that user should not have had permission to perform. It was also possible to gain access to areas within the application for which the accounts used were supposed to have insufficient access.

    Published:Jul 8, 2019
    Last Modified:Nov 21, 2024
    EPS:Jul 8, 2019
    EPSS Score:0.00191
    CVSS Score:8.8

    Affected Products

    Vendor
    Mailenable
    Product
    Mailenable

    Exploits

    No exploit reference

    Common Weakness Enumeration

    Common Attack Pattern Enumeration and Classification (CAPEC)

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High