Apache James (Java Apache Mail Enterprise Server) 1.7

CPE Details

Apache James (Java Apache Mail Enterprise Server) 1.7
1.7
2025-02-11
11h37 +00:00
2025-02-11
11h37 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:apache:james_server:1.7:*:*:*:*:*:*:*

Informations

Vendor

apache

Product

james_server

Version

1.7

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2024-45626 2025-02-06 11h21 +00:00 Apache James server JMAP HTML to text plain implementation in versions below 3.8.2 and 3.7.6 is subject to unbounded memory consumption that can result in a denial of service. Users are recommended to upgrade to version 3.7.6 and 3.8.2, which fix this issue.
7.5
Haute
CVE-2017-12628 2017-10-20 13h00 +00:00 The JMX server embedded in Apache James, also used by the command line client is exposed to a java de-serialization issue, and thus can be used to execute arbitrary commands. As James exposes JMX socket by default only on local-host, this vulnerability can only be used for privilege escalation. Release 3.0.1 upgrades the incriminated library.
7.8
Haute