Hmailserver

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 5
    Known Exploited: 0
    0
    Critical Level Threats
    0
    High Level Threats
    5
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2025-52374

    Use of hardcoded cryptographic key in Encryption.cs in hMailServer 5.8.6 and 5.6.9-beta allows attacker to decrypt passwords to other servers from hMailAdmin.exe.config file to access other hMailServer admin consoles with configured connections.

    Last Modified: Aug 07, 2025
    Published: Jul 21, 2025

    CVE-2025-52372

    An issue in hMailServer v.5.8.6 allows a local attacker to obtain sensitive information via the hmailserver/installation/hMailServerInnoExtension.iss and hMailServer.ini components.

    Last Modified: Aug 08, 2025
    Published: Jul 21, 2025

    CVE-2025-52373

    Use of hardcoded cryptographic key in BlowFish.cpp in hMailServer 5.8.6 and 5.6.9-beta allows attacker to decrypt passwords used in database connections from hMailServer.ini config file.

    Last Modified: Aug 07, 2025
    Published: Jul 21, 2025

    CVE-2013-5571

    HMailServer 5.3.x and prior: Memory Corruption which could cause DOS

    Last Modified: Nov 21, 2024
    Published: Jan 07, 2020

    CVE-2008-3676

    Unspecified vulnerability in the IMAP server in hMailServer 4.4.1 allows remote authenticated users to cause a denial of service (resource exhaustion or daemon crash) via a long series of IMAP commands.

    Last Modified: Apr 23, 2026
    Published: Aug 14, 2008
    Items Per Page
    Hmailserver Vulnerabilities & Security CVEs | CVE-DB