Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-6319

Опубликовано: 19 фев. 2008
Источник: nvd
CVSS2: 10
EPSS Низкий

Описание

Multiple unspecified vulnerabilities in Lyris ListManager 8.x before 8.95d, 9.2 before 9.2c, and 9.3 before 9.3b allow remote attackers to (1) gain list administrator privileges or (2) access arbitrary mailing lists via unknown vectors related to modification of client-side information; and (3) allow remote authenticated administrators to modify other account data by creating "new accounts that collide with existing accounts."

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:lyris:list_manager:8.95:*:*:*:*:*:*:*
cpe:2.3:a:lyris:list_manager:8.95a:*:*:*:*:*:*:*
cpe:2.3:a:lyris:list_manager:8.95b:*:*:*:*:*:*:*
cpe:2.3:a:lyris:list_manager:8.95c:*:*:*:*:*:*:*
cpe:2.3:a:lyris:list_manager:9.2:*:*:*:*:*:*:*
cpe:2.3:a:lyris:list_manager:9.2a:*:*:*:*:*:*:*
cpe:2.3:a:lyris:list_manager:9.2b:*:*:*:*:*:*:*
cpe:2.3:a:lyris:list_manager:9.3:*:*:*:*:*:*:*
cpe:2.3:a:lyris:list_manager:9.3a:*:*:*:*:*:*:*

EPSS

Процентиль: 82%
0.01684
Низкий

10 Critical

CVSS2

Дефекты

CWE-264

Связанные уязвимости

github
почти 4 года назад

Multiple unspecified vulnerabilities in Lyris ListManager 8.x before 8.95d, 9.2 before 9.2c, and 9.3 before 9.3b allow remote attackers to (1) gain list administrator privileges or (2) access arbitrary mailing lists via unknown vectors related to modification of client-side information; and (3) allow remote authenticated administrators to modify other account data by creating "new accounts that collide with existing accounts."

EPSS

Процентиль: 82%
0.01684
Низкий

10 Critical

CVSS2

Дефекты

CWE-264