Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Directory traversal vulnerability in the true_path function in private.py for Mailman 2.1.5 and earlier allows remote attackers to read arbitrary files via ".../....///" sequences, which are not properly cleansed by regular expressions that are intended to remove "../" and "./" sequences.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Mailman远程目录遍历漏洞
Vulnerability Description
GNU Mailman是由Python开发的共享软件,利用它可以管理邮件列表。 GNU Mailman private.py脚本存在安全问题,远程攻击者可以利用这个漏洞以进程权限查看系统文件内容。
CVSS Information
N/A
Vulnerability Type
N/A