CVE-2018-5693: Linuxmagic Magicspam

Low severity, CVSS 3.3. EPSS: 0.4% chance of exploitation in the next 30 days.

The LinuxMagic MagicSpam extension before 2.0.14-1 for Plesk allows local users to discover mailbox names by reading /var/log/magicspam/mslog.

Affected products

  • Linuxmagic Magicspam: before 2.0.14-1 (fixed in 2.0.14-1)

Published 2018-01-14. Last modified 2026-06-17.