2.1
CVSSv2

CVE-2002-0389

Published: 18/06/2002 Updated: 28/12/2016
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Pipermail in Mailman stores private mail messages with predictable filenames in a world-executable directory, which allows local users to read private mailing list archives.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gnu mailman

Vendor Advisories

It was found that mailman did not sanitize the list name before passing it to certain MTAs A local attacker could use this flaw to execute arbitrary code as the user running mailman (CVE-2015-2775) It was found that mailman stored private email messages in a world-readable directory A local user could use this flaw to read private mailing list a ...