Show filters
14 Total Results
Displaying 1-10 of 14
Sort by:
Attacker Value
Unknown

CVE-2025-22595

Disclosure Date: January 09, 2025 (last updated January 10, 2025)
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Yamna Khawaja Mailing Group Listserv allows Reflected XSS.This issue affects Mailing Group Listserv: from n/a through 2.0.9.
0
Attacker Value
Unknown

CVE-2025-22527

Disclosure Date: January 09, 2025 (last updated January 10, 2025)
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Yamna Khawaja Mailing Group Listserv allows SQL Injection.This issue affects Mailing Group Listserv: from n/a through 2.0.9.
0
Attacker Value
Unknown

CVE-2017-15967

Disclosure Date: October 29, 2017 (last updated November 26, 2024)
Mailing List Manager Pro 3.0 allows SQL Injection via the edit parameter to admin/users in a sort=login action, or the edit parameter to admin/template.
0
Attacker Value
Unknown

CVE-2016-1211

Disclosure Date: June 04, 2016 (last updated November 25, 2024)
Cross-site scripting (XSS) vulnerability in Epoch Web Mailing List 0.31 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown

CVE-2011-3816

Disclosure Date: September 24, 2011 (last updated October 04, 2023)
WEBinsta mailing list manager 1.3e allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by install/install3.php and certain other files.
0
Attacker Value
Unknown

CVE-2008-5979

Disclosure Date: January 27, 2009 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in default.asp in Ocean12 Mailing List Manager Gold allows remote attackers to inject arbitrary web script or HTML via the Email parameter.
0
Attacker Value
Unknown

CVE-2008-5978

Disclosure Date: January 27, 2009 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in Ocean12 Mailing List Manager Gold allow remote attackers to execute arbitrary SQL commands via the Email parameter to (1) default.asp and (2) s_edit.asp.
0
Attacker Value
Unknown

CVE-2008-5980

Disclosure Date: January 27, 2009 (last updated October 04, 2023)
Ocean12 Mailing List Manager Gold stores sensitive data under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for o12mail.mdb.
0
Attacker Value
Unknown

CVE-2008-5606

Disclosure Date: December 16, 2008 (last updated October 04, 2023)
Gazatem QMail Mailing List Manager 1.2 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for qmail.mdb.
0
Attacker Value
Unknown

CVE-2006-4209

Disclosure Date: August 17, 2006 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in install3.php in WEBInsta Mailing List Manager 1.3e allows remote attackers to execute arbitrary PHP code via a URL in the cabsolute_path parameter.
0