CRLF injection vulnerability in Utils.py in Mailman before 2.1.9rc1 allows remote attackers to spoof messages in the error log and possibly trick the administrator into visiting malicious URLs via CRLF sequences in the URI.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-1188-1 | New mailman packages fix several problems |
EUVD |
EUVD-2006-4612 | CRLF injection vulnerability in Utils.py in Mailman before 2.1.9rc1 allows remote attackers to spoof messages in the error log and possibly trick the administrator into visiting malicious URLs via CRLF sequences in the URI. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T19:14:47.768Z
Reserved: 2006-09-07T00:00:00
Link: CVE-2006-4624
No data.
Status : Deferred
Published: 2006-09-07T19:04:00.000
Modified: 2025-04-03T01:03:51.193
Link: CVE-2006-4624
OpenCVE Enrichment
No data.
Weaknesses
Debian DSA
EUVD