Vulnerabilities (CVE)

Filtered by vendor Gfi Subscribe
Filtered by product Mailessentials
Total 22 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-34489 1 Gfi 1 Mailessentials 2025-11-04 N/A 7.8 HIGH
GFI MailEssentials prior to version 21.8 is vulnerable to a local privilege escalation issue. A local attacker can escalate to NT Authority/SYSTEM by sending a crafted serialized payload to a .NET Remoting Service.
CVE-2004-1312 1 Gfi 2 Mailessentials, Mailsecurity 2025-04-03 10.0 HIGH N/A
A bug in the HTML parser in a certain Microsoft HTML library, as used in various third party products, may allow remote attackers to cause a denial of service via certain strings, as reported in GFI MailEssentials for Exchange 9 and 10, and GFI MailSecurity for Exchange 8, which causes emails to remain in IIS or Exchange mail queues.