First published: Fri Dec 21 2001(Updated: )
Cross-site scripting vulnerability in Mailman email archiver before 2.08 allows attackers to obtain sensitive information or authentication credentials via a malicious link that is accessed by other web users.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mailman | ||
Mailman | =5.0 | |
Mailman | =5.1 | |
Mailman | =6.0 | |
Mailman | =7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-0884 has a medium severity due to its potential to expose sensitive information via cross-site scripting.
To fix CVE-2001-0884, upgrade Mailman to version 2.08 or later.
CVE-2001-0884 affects Mailman versions prior to 2.08, specifically 5.0, 5.1, 6.0, and 7.0.
CVE-2001-0884 is a cross-site scripting (XSS) vulnerability.
Yes, attackers can potentially steal authentication credentials through a crafted link exploiting CVE-2001-0884.