GNU Mailman 2.0.x - Admin Login Variant Cross-Site Scripting

Related Vulnerabilities: CVE-2002-0855  
Publish Date: 24 Jul 2002
Author: office

GNU Mailman is prone to a cross-site scripting vulnerability. An attacker may construct a malicious link to the administrative login page, which contains arbitrary HTML and script code. 

A user visiting the link will have the attacker's script code executed in their web browser in the context of the site running the vulnerable software.
