Vulnerability Database

289,871

Total vulnerabilities in the database

CVE-2009-1469

CRLF injection vulnerability in the Forgot Password implementation in server/webmail.php in IceWarp eMail Server and WebMail Server before 9.4.2 makes it easier for remote attackers to trick a user into disclosing credentials via CRLF sequences preceding a Reply-To header in the subject element of an XML document, as demonstrated by triggering an e-mail message from the server that contains a user's correct credentials, and requests that the user compose a reply that includes this message.

  • Published: May 5, 2009
  • Updated: Apr 13, 2023
  • CVE: CVE-2009-1469
  • Severity: Low
  • Exploit:

CVSS v2:

  • Severity: Low
  • Score: 4.3
  • AV:N/AC:M/Au:N/C:P/I:N/A:N

CWEs:

Software From Fixed in
icewarp / email_server 2.10.340 2.10.340.x
icewarp / webmail_server 4.2.1 4.2.1.x
icewarp / email_server 5.9.4 5.9.4.x
icewarp / webmail_server 6.0.7 6.0.7.x
icewarp / email_server 2.10.115 2.10.115.x
icewarp / webmail_server 7.6.4 7.6.4.x
icewarp / webmail_server 7.1.4 7.1.4.x
icewarp / email_server 4.2.3 4.2.3.x
icewarp / webmail_server 3.00.140 3.00.140.x
icewarp / email_server 7.0.1 7.0.1.x
icewarp / webmail_server 5.5.7 5.5.7.x
icewarp / webmail_server 2.10.320 2.10.320.x
icewarp / webmail_server 6.0.3 6.0.3.x
icewarp / webmail_server 5.8.6 5.8.6.x
icewarp / webmail_server 8.5.0 8.5.0.x
icewarp / webmail_server 5.9.4 5.9.4.x
icewarp / webmail_server 3.00.130 3.00.130.x
icewarp / webmail_server 5.8.2 5.8.2.x
icewarp / webmail_server 7.4.2 7.4.2.x
icewarp / email_server 4.10.040 4.10.040.x
icewarp / webmail_server 4.10.040 4.10.040.x
icewarp / webmail_server 5.1.2 5.1.2.x
icewarp / email_server 4.10.050 4.10.050.x
icewarp / email_server 2.10.360 2.10.360.x
icewarp / webmail_server 5.5.4 5.5.4.x
icewarp / webmail_server 2.10.210 2.10.210.x
icewarp / webmail_server 5.7.3 5.7.3.x
icewarp / email_server 5.8.2 5.8.2.x
icewarp / email_server 3.00.140 3.00.140.x
icewarp / webmail_server 9.1.0 9.1.0.x
icewarp / email_server 7.1.6 7.1.6.x
icewarp / webmail_server 5.5.3 5.5.3.x
icewarp / email_server 2.10.310 2.10.310.x
icewarp / email_server 5.8.6 5.8.6.x
icewarp / webmail_server 2.10.330 2.10.330.x
icewarp / email_server 7.1.4 7.1.4.x
icewarp / webmail_server 8.0.2 8.0.2.x
icewarp / email_server 8.9.1 8.9.1.x
icewarp / email_server 5.7.3 5.7.3.x
icewarp / email_server 8.2.0 8.2.0.x
icewarp / email_server 6.2.1 6.2.1.x
icewarp / email_server 2.10.320 2.10.320.x
icewarp / webmail_server 8.2.2 8.2.2.x
icewarp / webmail_server 2.10.280 2.10.280.x
icewarp / webmail_server 7.4.5 7.4.5.x
icewarp / email_server 7.6.0 7.6.0.x
icewarp / webmail_server 2.10.250 2.10.250.x
icewarp / email_server 2.10.140 2.10.140.x
icewarp / email_server 5.1.2 5.1.2.x
icewarp / webmail_server 2.10.150 2.10.150.x
icewarp / email_server 7.4.5 7.4.5.x
icewarp / webmail_server 5.4.1 5.4.1.x
icewarp / email_server 5.8.5 5.8.5.x
icewarp / webmail_server 3.10.011 3.10.011.x
icewarp / email_server 2.10.110 2.10.110.x
icewarp / email_server 2.10.105 2.10.105.x
icewarp / email_server 8.5.0 8.5.0.x
icewarp / webmail_server 7.0.1 7.0.1.x
icewarp / webmail_server 5.4.4 5.4.4.x
icewarp / email_server 6.0.7 6.0.7.x
icewarp / webmail_server 2.10.165 2.10.165.x
icewarp / email_server 3.00.130 3.00.130.x
icewarp / email_server 5.4.3 5.4.3.x
icewarp / email_server 4.2.2 4.2.2.x
icewarp / email_server 5.5.5 5.5.5.x
icewarp / webmail_server 5.4.2 5.4.2.x
icewarp / email_server 7.6.4 7.6.4.x
icewarp / webmail_server 2.10.360 2.10.360.x
icewarp / webmail_server 2.10.105 2.10.105.x
icewarp / email_server 2.10.170 2.10.170.x
icewarp / email_server 5.4.4 5.4.4.x
icewarp / email_server 9.0.0 9.0.0.x
icewarp / email_server 5.4.1 5.4.1.x
icewarp / email_server 2.10.250 2.10.250.x
icewarp / webmail_server 2.10.200 2.10.200.x
icewarp / email_server 8.3.8 8.3.8.x
icewarp / webmail_server - 9.3.0.x
icewarp / webmail_server 3.10.110 3.10.110.x
icewarp / webmail_server 5.3.2 5.3.2.x
icewarp / webmail_server 6.2.1 6.2.1.x
icewarp / webmail_server 2.10.170 2.10.170.x
icewarp / webmail_server 7.2.0 7.2.0.x
icewarp / webmail_server 3.00.120 3.00.120.x
icewarp / webmail_server 5.5.6 5.5.6.x
icewarp / email_server 8.3.5 8.3.5.x
icewarp / email_server 2.10.280 2.10.280.x
icewarp / webmail_server 4.2.3 4.2.3.x
icewarp / webmail_server 6.0.5 6.0.5.x
icewarp / webmail_server 2.10.240 2.10.240.x
icewarp / email_server 8.2.2 8.2.2.x
icewarp / email_server 2.10.210 2.10.210.x
icewarp / email_server 6.0.2 6.0.2.x
icewarp / email_server 2.10.290 2.10.290.x
icewarp / email_server 6.0.3 6.0.3.x
icewarp / email_server 5.1.5 5.1.5.x
icewarp / webmail_server 3.00.100 3.00.100.x
icewarp / email_server 5.8.3 5.8.3.x
icewarp / webmail_server 4.00.30 4.00.30.x
icewarp / email_server 5.5.7 5.5.7.x
icewarp / webmail_server 2.10.190 2.10.190.x
icewarp / webmail_server 7.6.0 7.6.0.x
icewarp / webmail_server 2.10.140 2.10.140.x
icewarp / webmail_server 2.10.290 2.10.290.x
icewarp / email_server 3.00.120 3.00.120.x
icewarp / email_server 2.10.200 2.10.200.x
icewarp / webmail_server 5.4.3 5.4.3.x
icewarp / email_server 2.10.331 2.10.331.x
icewarp / webmail_server 6.1.0 6.1.0.x
icewarp / email_server 7.4.0 7.4.0.x
icewarp / email_server 4.4.2 4.4.2.x
icewarp / webmail_server 5.8.4 5.8.4.x
icewarp / email_server 8.0.1 8.0.1.x
icewarp / email_server 5.3.2 5.3.2.x
icewarp / email_server 2.10.330 2.10.330.x
icewarp / webmail_server 2.10.331 2.10.331.x
icewarp / webmail_server 5.8.3 5.8.3.x
icewarp / webmail_server 4.4.1 4.4.1.x
icewarp / email_server 9.1.0 9.1.0.x
icewarp / webmail_server 7.1.6 7.1.6.x
icewarp / email_server 2.10.220 2.10.220.x
icewarp / email_server 2.10.190 2.10.190.x
icewarp / email_server 5.5.4 5.5.4.x
icewarp / email_server 7.4.2 7.4.2.x
icewarp / email_server 7.2.0 7.2.0.x
icewarp / webmail_server 2.10.310 2.10.310.x
icewarp / webmail_server 9.2.0 9.2.0.x
icewarp / email_server 6.0.5 6.0.5.x
icewarp / webmail_server 8.0.1 8.0.1.x
icewarp / email_server 5.3.0 5.3.0.x
icewarp / webmail_server 7.4.0 7.4.0.x
icewarp / webmail_server 2.10.110 2.10.110.x
icewarp / webmail_server 2.10.350 2.10.350.x
icewarp / email_server 5.4.2 5.4.2.x
icewarp / email_server 2.10.165 2.10.165.x
icewarp / webmail_server 7.5.2 7.5.2.x
icewarp / email_server 2.10.260 2.10.260.x
icewarp / webmail_server 5.8.5 5.8.5.x
icewarp / email_server 2.10.350 2.10.350.x
icewarp / webmail_server 5.5.5 5.5.5.x
icewarp / email_server 4.4.1 4.4.1.x
icewarp / webmail_server 5.1.5 5.1.5.x
icewarp / webmail_server 4.10.050 4.10.050.x
icewarp / email_server 5.5.3 5.5.3.x
icewarp / email_server 3.00.110 3.00.110.x
icewarp / email_server 4.2.1 4.2.1.x
icewarp / email_server 5.5.6 5.5.6.x
icewarp / webmail_server 8.0.3 8.0.3.x
icewarp / webmail_server 8.2.0 8.2.0.x
icewarp / email_server - 9.3.0.x
icewarp / webmail_server 2.10.220 2.10.220.x
icewarp / webmail_server 8.9.1 8.9.1.x
icewarp / email_server 8.0.2 8.0.2.x
icewarp / webmail_server 8.3.8 8.3.8.x
icewarp / webmail_server 2.10.115 2.10.115.x
icewarp / webmail_server 6.0.2 6.0.2.x
icewarp / email_server 2.10.240 2.10.240.x
icewarp / webmail_server 2.10.340 2.10.340.x
icewarp / email_server 5.1.3 5.1.3.x
icewarp / email_server 5.8.4 5.8.4.x
icewarp / email_server 6.1.0 6.1.0.x
icewarp / webmail_server 2.10.260 2.10.260.x
icewarp / webmail_server 9.0.0 9.0.0.x
icewarp / email_server 4.00.30 4.00.30.x
icewarp / webmail_server 8.3.5 8.3.5.x
icewarp / webmail_server 5.3.0 5.3.0.x
icewarp / email_server 7.5.2 7.5.2.x
icewarp / email_server 3.10.011 3.10.011.x
icewarp / webmail_server 3.00.110 3.00.110.x
icewarp / email_server 3.10.110 3.10.110.x
icewarp / webmail_server 4.4.2 4.4.2.x
icewarp / webmail_server 4.2.2 4.2.2.x
icewarp / email_server 8.0.3 8.0.3.x
icewarp / email_server 9.2.0 9.2.0.x
icewarp / email_server 2.10.150 2.10.150.x
icewarp / email_server 3.00.100 3.00.100.x
icewarp / webmail_server 5.1.3 5.1.3.x