Known vulnerabilities in acmailer CGI
Vendor:
Extra Innovation
Software:
acmailer CGI
Software CPE:
cpe:2.3:a:extra_innovation:acmailer_cgi:*:*:*:*:*:*:*:*
Website:
https://extrainnovation.co.jp/
Total vulnerabilities:
4
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (4)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU144411 - Incorrect Authorization CVE-2026-70408 |
CWE-863 | Medium | 4.1.2 | 20.08.2026 |
SB2026082016 |
||
| #VU144410 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2026-66358 |
CWE-79 | Low | 4.1.2 | 20.08.2026 |
SB2026082016 |
||
| #VU104174 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2021-46686 |
CWE-78 | High | 4.0.4 | 25.02.2025 |
SB2025022531 |
||
| #VU103888 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2023-49780 |
CWE-79 | Low | 4.0.6 | 12.02.2025 |
SB2025021216 |