References https://ddpoc.com/DVB-2025-10079.html https://github.com/LJY00008888/-POC https://www.cnvd.org.cn/flaw/show/CNVD-2021-16326 https://github.com/Nriver/wy876-POC https://wy.zone.ci/bug_detail.php?wybug_id=wooyun-2015-0133689 https://avd.aliyun.com/detail?id=AVD-2021-896959 https://adg.csdn.net/694cfdbb5b9f5f31781ac04d.html
Related VulnerabilitiesPoCCVE-2026-23693: ElementsKit Lite <3.7.9 - Unauthenticated Mailchimp ProxyPoCCVE-2026-29962: HSC MailInspector - Local File InclusionPoCCVE-2026-29963: HSC MailInspector - Unauthenticated Arbitrary File ReadPoCCVE-2026-56292: AcyMailing < 10.11.1 - Unauthenticated SQL InjectionPoCCVE-2022-39258: Mailcow Dockerized Swagger UI - Cross-Site Scripting綠色運算|NUMail - OS Command InjectionPoCafterlogic-path-disclosure: AfterLogic Aurora and WebMail Pro < 7.7.9 - Full Path Disclosure用友U8Cloud MailApproveServlet存在SQL注入漏洞东胜物流软件 /PriceCarrier/CrmProxyMailListHtmlGridSource.aspx SQL 注入漏洞广联达OA /Mail/Services/EmailAccountOrgUserService.asmx/GetUserEmailByOrgEmails XML 外部实体注入漏洞PoCCVE-2021-24916: WordPress Qubely < 1.8.6 - Unauthenticated Email SendingPoCcpanel-mailman-xss: cPanel Mailman - Cross-Site ScriptingPoCCVE-2026-24423: SmarterMail - Remote Code Execution