CVE-2020-15011
GNU Mailman before 2.1.33 allows arbitrary content injection via the Cgi/private.py private archive login page.
GNU Mailman before 2.1.33 allows arbitrary content injection via the Cgi/private.py private archive login page.
MEDIUM · CVSS 4.3
EPSS 0.01332
Monitor
- No active-exploitation, high-EPSS, or public-exploit signals - routine patching cadence
Sigma rules0
YARA rules0