Vulnerabilities (CVE)

Filtered by vendor Gnu Subscribe
Filtered by product Mailman
Total 44 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-0861 1 Gnu 1 Mailman 2023-12-10 7.2 HIGH N/A
Mailman 1.1 allows list administrators to execute arbitrary commands via shell metacharacters in the %(listname) macro expansion.
CVE-2003-0992 1 Gnu 1 Mailman 2023-12-10 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in the create CGI script for Mailman before 2.1.3 allows remote attackers to steal cookies of other users.
CVE-2004-0412 1 Gnu 1 Mailman 2023-12-10 5.0 MEDIUM N/A
Mailman before 2.1.5 allows remote attackers to obtain user passwords via a crafted email request to the Mailman server.
CVE-2001-0884 1 Gnu 1 Mailman 2023-12-10 5.1 MEDIUM N/A
Cross-site scripting vulnerability in Mailman email archiver before 2.08 allows attackers to obtain sensitive information or authentication credentials via a malicious link that is accessed by other web users.