Vulnerability   
Search   
    Search 219043 CVE descriptions
and 99761 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2006-4624
Description:CRLF injection vulnerability in Utils.py in Mailman before 2.1.9rc1 allows remote attackers to spoof messages in the error log and possibly trick the administrator into visiting malicious URLs via CRLF sequences in the URI.
Test IDs: 1.3.6.1.4.1.25623.1.0.57482   1.3.6.1.4.1.25623.1.0.62139   1.3.6.1.4.1.25623.1.0.58991  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2006-4624
BugTraq ID: 19831
http://www.securityfocus.com/bid/19831
BugTraq ID: 20021
http://www.securityfocus.com/bid/20021
Bugtraq: 20060913 Mailman 2.1.8 Multiple Security Issues (Google Search)
http://www.securityfocus.com/archive/1/445992/100/0/threaded
Debian Security Information: DSA-1188 (Google Search)
http://www.debian.org/security/2006/dsa-1188
http://security.gentoo.org/glsa/glsa-200609-12.xml
http://www.mandriva.com/security/advisories?name=MDKSA-2006:165
http://moritz-naumann.com/adv/0013/mailmanmulti/0013.txt
http://svn.sourceforge.net/viewvc/mailman/trunk/mailman/Mailman/Utils.py?r1=7859&r2=7923
http://mail.python.org/pipermail/mailman-announce/2006-September/000087.html
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9756
RedHat Security Advisories: RHSA-2007:0779
http://www.redhat.com/support/errata/RHSA-2007-0779.html
http://secunia.com/advisories/21732
http://secunia.com/advisories/22011
http://secunia.com/advisories/22020
http://secunia.com/advisories/22227
http://secunia.com/advisories/22639
http://secunia.com/advisories/27669
SuSE Security Announcement: SUSE-SR:2006:025 (Google Search)
http://www.novell.com/linux/security/advisories/2006_25_sr.html
http://www.vupen.com/english/advisories/2006/3446
XForce ISS Database: mailman-admin-spoofing(28734)
https://exchange.xforce.ibmcloud.com/vulnerabilities/28734




© 1998-2021 E-Soft Inc. All rights reserved.