CVE-2004-1177

EPSS 1.6%

mailman - cross-site scripting, directory traversal

Published: 4/29/2022Modified: 3/9/2026

Description

Cross-site scripting (XSS) vulnerability in the driver script in mailman before 2.1.5 allows remote attackers to inject arbitrary web script or HTML via a URL, which is not properly escaped in the resulting error page.

Affected packages (2)

References (11)