Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-0618

Опубликовано: 26 июл. 2018
Источник: debian
EPSS Низкий

Описание

Cross-site scripting vulnerability in Mailman 2.1.26 and earlier allows remote authenticated attackers to inject arbitrary web script or HTML via unspecified vectors.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
mailmanfixed1:2.1.27-1package

Примечания

  • https://mail.python.org/pipermail/mailman-announce/2018-June/000236.html

  • https://launchpad.net/mailman/+milestone/2.1.27

  • https://bazaar.launchpad.net/~mailman-coders/mailman/2.1/revision/1747

  • https://bazaar.launchpad.net/~mailman-coders/mailman/2.1/revision/1754

  • https://bazaar.launchpad.net/~mailman-coders/mailman/2.1/revision/1783

  • https://bazaar.launchpad.net/~mailman-coders/mailman/2.1/revision/1785

EPSS

Процентиль: 67%
0.00536
Низкий

Связанные уязвимости

CVSS3: 5.4
ubuntu
больше 7 лет назад

Cross-site scripting vulnerability in Mailman 2.1.26 and earlier allows remote authenticated attackers to inject arbitrary web script or HTML via unspecified vectors.

CVSS3: 4.8
redhat
больше 7 лет назад

Cross-site scripting vulnerability in Mailman 2.1.26 and earlier allows remote authenticated attackers to inject arbitrary web script or HTML via unspecified vectors.

CVSS3: 5.4
nvd
больше 7 лет назад

Cross-site scripting vulnerability in Mailman 2.1.26 and earlier allows remote authenticated attackers to inject arbitrary web script or HTML via unspecified vectors.

suse-cvrf
больше 7 лет назад

Security update for mailman

CVSS3: 5.4
github
больше 3 лет назад

Cross-site scripting vulnerability in Mailman 2.1.26 and earlier allows remote authenticated attackers to inject arbitrary web script or HTML via unspecified vectors.

EPSS

Процентиль: 67%
0.00536
Низкий