First published: Thu Jun 03 2004(Updated: )
Mailman before 2.1.5 allows remote attackers to obtain user passwords via a crafted email request to the Mailman server.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
pip/mailman | <2.1.5 | 2.1.5 |
Mailman | =2.1.3 | |
Mailman | =2.1.2 | |
Mailman | =2.1 | |
Mailman | =2.1b1 | |
Mailman | =2.1.1 | |
Mailman | =2.1.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-0412 is classified as a moderate severity vulnerability that allows remote attackers to obtain user passwords.
To fix CVE-2004-0412, you should upgrade your Mailman installation to version 2.1.5 or later.
CVE-2004-0412 affects Mailman versions 2.1.4 and earlier.
Yes, CVE-2004-0412 can be exploited remotely through a crafted email request.
CVE-2004-0412 can lead to the exposure of user passwords.