Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2021-42096

Опубликовано: 21 окт. 2021
Источник: ubuntu
Приоритет: high
EPSS Низкий
CVSS2: 4
CVSS3: 4.3

Описание

GNU Mailman before 2.1.35 may allow remote Privilege Escalation. A certain csrf_token value is derived from the admin password, and may be useful in conducting a brute-force attack against that password.

РелизСтатусПримечание
bionic

released

1:2.1.26-1ubuntu0.4
esm-apps/focal

released

1:2.1.29-1ubuntu3.1
esm-infra/bionic

not-affected

1:2.1.26-1ubuntu0.4
esm-infra/xenial

released

1:2.1.20-1ubuntu0.6+esm1
focal

released

1:2.1.29-1ubuntu3.1
upstream

released

2.1.35

Показывать по

EPSS

Процентиль: 59%
0.0039
Низкий

4 Medium

CVSS2

4.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.3
redhat
почти 4 года назад

GNU Mailman before 2.1.35 may allow remote Privilege Escalation. A certain csrf_token value is derived from the admin password, and may be useful in conducting a brute-force attack against that password.

CVSS3: 4.3
nvd
почти 4 года назад

GNU Mailman before 2.1.35 may allow remote Privilege Escalation. A certain csrf_token value is derived from the admin password, and may be useful in conducting a brute-force attack against that password.

CVSS3: 4.3
debian
почти 4 года назад

GNU Mailman before 2.1.35 may allow remote Privilege Escalation. A cer ...

github
около 3 лет назад

GNU Mailman before 2.1.35 may allow remote Privilege Escalation. A certain csrf_token value is derived from the admin password, and may be useful in conducting a brute-force attack against that password.

suse-cvrf
почти 4 года назад

Security update for mailman

EPSS

Процентиль: 59%
0.0039
Низкий

4 Medium

CVSS2

4.3 Medium

CVSS3