[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250770

 
 

909

 
 

196157

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CESA-2021:4913 -- centos 7 mailman

ID: oval:org.secpod.oval:def:205921Date: (C)2021-12-22   (M)2023-12-20
Class: PATCHFamily: unix




Mailman is a program used to help manage e-mail discussion lists. Security Fix: * mailman: CSRF token bypass allows to perform CSRF attacks and account takeover * mailman: CSRF token bypass allows to perform CSRF attacks and admin takeover * mailman: CSRF protection missing in the user options page For more details about the security issue, including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page listed in the References section.

Platform:
CentOS 7
Product:
mailman
Reference:
CESA-2021:4913
CVE-2016-6893
CVE-2021-42097
CVE-2021-44227
CVE    3
CVE-2016-6893
CVE-2021-42097
CVE-2021-44227
CPE    48
cpe:/a:gnu:mailman:2.1.12:rc2
cpe:/a:gnu:mailman:2.1.12:rc1
cpe:/a:gnu:mailman:2.1.1
cpe:/a:gnu:mailman:2.1.13:rc1
...

© SecPod Technologies