Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Add2it Mailman Free 1.73 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the list parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Add2it Mailman Free远程执行任意命令漏洞
Vulnerability Description
Mailman Free是一个免费的基于Web的邮件列表管理软件包,用Perl语言实现,可运行于Unix/Linux 类操作系统下。 Mailman存在输入验证漏洞,可以使远程攻击者在主机上执行任意命令。 Mailman对用户输入未作充分过滤而提交给open()系统调用,远程攻击者可以在输入中混入特定的shell转义字符,从而在目标主机上执行任意命令。先前版本的Mailman可能也存在类似的漏洞。
CVSS Information
N/A
Vulnerability Type
N/A