Total
3 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2001-0021 | 1 Endymion | 1 Mailman Webmail | 2017-10-09 | 10.0 HIGH | N/A |
MailMan Webmail 3.0.25 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the alternate_template parameter. | |||||
CVE-1999-0850 | 1 Endymion | 1 Mailman Webmail | 2008-09-09 | 3.6 LOW | N/A |
The default permissions for Endymion MailMan allow local users to read email or modify files. | |||||
CVE-2002-0417 | 1 Endymion | 1 Mailman Webmail | 2008-09-05 | 5.0 MEDIUM | N/A |
Directory traversal vulnerability in Endymion MailMan before 3.1 allows remote attackers to read arbitrary files via a .. (dot dot) and a null character in the ALTERNATE_TEMPLATES parameter for various mmstdo*.cgi programs. |