Search Results (42 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2021-29281 1 Gfi 1 Archiver 2024-11-21 9.8 Critical
File upload vulnerability in GFI Mail Archiver versions up to and including 15.1 via insecure implementation of Telerik Web UI plugin which is affected by CVE-2014-2217, and CVE-2017-11317.
CVE-2019-16414 1 Gfi 1 Kerio Control 2024-11-21 6.1 Medium
A DOM based XSS in GFI Kerio Control v9.3.0 allows embedding of malicious code and manipulating the login page to send back a victim's cleartext credentials to an attacker via a login/?reason=failure&NTLM= URI.