Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
listmanager vulnerabilities and exploits
(subscribe to this query)
578
VMScore
CVE-2006-4546
Lyris ListManager 8.95 allows remote authenticated users, who have administrative privileges for at least one list on the server, to add new administrators to any list via a modified MEMBERS_.List_ parameter.
Lyris List Manager 8.95
668
VMScore
CVE-2005-4144
Lyris ListManager 5.0 up to and including 8.9a allows remote malicious users to add "ORDER BY" columns to SQL queries via unusual whitespace characters in the orderby parameter, such as (1) newlines and (2) 0xFF (ASCII 255) characters, which are interpreted as whitespac...
Lyris List Manager 5.0
Lyris List Manager 6.0
Lyris List Manager 7.0
Lyris List Manager 8.0
Lyris List Manager 8.8a
578
VMScore
CVE-2006-4547
Lyris ListManager 8.95 allows remote authenticated users to obtain sensitive information by attempting to add a user with a ' (single quote) character in the name, which reveals the details of the underlying SQL query, possibly because of a forced SQL error or SQL injection.
Lyris List Manager 8.95
890
VMScore
CVE-2007-6319
Multiple unspecified vulnerabilities in Lyris ListManager 8.x prior to 8.95d, 9.2 prior to 9.2c, and 9.3 prior to 9.3b allow remote malicious users to (1) gain list administrator privileges or (2) access arbitrary mailing lists via unknown vectors related to modification of clien...
Lyris List Manager 8.95b
Lyris List Manager 8.95c
Lyris List Manager 8.95
Lyris List Manager 8.95a
Lyris List Manager 9.3a
Lyris List Manager 9.2b
Lyris List Manager 9.3
Lyris List Manager 9.2
Lyris List Manager 9.2a
668
VMScore
CVE-2005-0157
The confirm add-on in SmartList 3.15 and previous versions allows malicious users to subscribe arbitrary e-mail addresses by using a valid cookie that specifies an address other than the address for which the cookie was assigned.
Smartlist Smartlist
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
SSTI
CVE-2024-35863
CVE-2024-35910
man-in-the-middle
CVE-2024-35912
CVE-2024-25742
LFI
CVE-2024-32002
CVE-2024-22120
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2