Products: 4
    Vulnerabilities: 9
    Known Exploited: 0
    0
    Critical Level Threats
    2
    High Level Threats
    7
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2024-28063

    Kiteworks Totemomail through 7.0.0 allows /responsiveUI/EnvelopeOpenServlet envelopeRecipient reflected XSS.

    Last Modified: Jun 17, 2025
    Published: May 18, 2024

    CVE-2020-7918

    An insecure direct object reference in webmail in totemo totemomail 7.0.0 allows an authenticated remote user to read and modify mail folder names of other users via enumeration.

    Last Modified: Nov 21, 2024
    Published: Mar 27, 2020

    CVE-2019-17189

    totemodata 3.0.0_b936 has XSS via a folder name.

    Last Modified: Nov 21, 2024
    Published: Oct 22, 2019

    CVE-2018-15511

    Cross-site scripting (XSS) vulnerability in the 'Notification template' feature of totemomail 6.0.0 build 570 allows remote attackers to inject arbitrary web script or HTML.

    Last Modified: Nov 21, 2024
    Published: Aug 29, 2019

    CVE-2018-15510

    Cross-site scripting (XSS) vulnerability in the 'Certificate' feature of totemomail 6.0.0 build 570 allows remote attackers to inject arbitrary web script or HTML.

    Last Modified: Nov 21, 2024
    Published: Aug 29, 2019
    Items Per Page