Multiple cross-site scripting (XSS) vulnerabilities in GNU Mailman prior to 2.1.14rc1 allow remote authenticated users to inject arbitrary web script or HTML via vectors involving (1) the list information field or (2) the list description field.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
gnu mailman 2.1.5 |
||
gnu mailman 2.1.11 |
||
gnu mailman 2.1.3 |
||
gnu mailman 2.1.8 |
||
gnu mailman 2.1.13 |
||
gnu mailman 2.1.2 |
||
gnu mailman 2.1.9 |
||
gnu mailman 2.1 |
||
gnu mailman 2.1.6 |
||
gnu mailman |
||
gnu mailman 2.1.10 |
||
gnu mailman 2.1.1 |
||
gnu mailman 2.1.12 |
||
gnu mailman 2.1.7 |
||
gnu mailman 2.1.4 |