Totemo
9 known vulnerabilities
Top Products
Kiteworks Totemomail through 7.0.0 allows /responsiveUI/EnvelopeOpenServlet envelopeRecipient reflected XSS.
An insecure direct object reference in webmail in totemo totemomail 7.0.0 allows an authenticated remote user to read an
totemodata 3.0.0_b936 has XSS via a folder name.
Log viewer in totemomail 6.0.0 build 570 allows access to sessionIDs of high privileged users by leveraging access to a
Cross-site scripting (XSS) vulnerability in the 'Authorisation Service' feature of totemomail 6.0.0 build 570 allows rem
Cross-site scripting (XSS) vulnerability in the 'Notification template' feature of totemomail 6.0.0 build 570 allows rem
Cross-site scripting (XSS) vulnerability in the 'Certificate' feature of totemomail 6.0.0 build 570 allows remote attack
Multiple cross-site request forgery (CSRF) vulnerabilities in totemomail Encryption Gateway before 6.0.0_Build_371 allow
totemomail Encryption Gateway before 6.0_b567 allows remote attackers to obtain sensitive information about user session
Frequently Asked Questions
How many CVEs affect Totemo?
Totemo has 9 CVE records in our database, including 0 critical and 2 high severity vulnerabilities.
What are the most severe Totemo vulnerabilities?
Totemo has 0 critical severity (CVSS 9.0+) and 2 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Totemo vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Totemo products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Totemo Vulnerabilities
CyberStrike scans your infrastructure for Totemo vulnerabilities and provides real-time remediation guidance.
Get Started