Product
lyris list manager
15 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2014-5188
CVE-2008-2923
CVE-2007-6319
CVE-2006-4547
CVE-2006-4546
CVE-2005-4149
CVE-2005-4148
CVE-2005-4147
CVE-2005-4146
CVE-2005-4145
CVE-2005-4144
CVE-2005-4143
CVE-2005-4142
CVE-2000-0863
CVE-2000-0758
all versions
Cross-site scripting (XSS) vulnerability in doemailpassword.tml in Lyris ListManager (LM) 8.95a allows remote attackers to inject
all versions
Cross-site scripting (XSS) vulnerability in read/search/results in Lyris ListManager 8.8, 8.95, and 9.3d allows remote attackers t
all versions
Multiple unspecified vulnerabilities in Lyris ListManager 8.x before 8.95d, 9.2 before 9.2c, and 9.3 before 9.3b allow remote atta
all versions
Lyris ListManager 8.95 allows remote authenticated users to obtain sensitive information by attempting to add a user with a ' (sin
all versions
Lyris ListManager 8.95 allows remote authenticated users, who have administrative privileges for at least one list on the server,
all versions
Lyris ListManager 8.8 through 8.9b allows remote attackers to obtain sensitive information by causing errors in TML scripts, such
all versions
Lyris ListManager 8.5, and possibly other versions before 8.8, includes sensitive information in the env hidden variable, which al
all versions
The TCLHTTPd service in Lyris ListManager before 8.9b allows remote attackers to obtain source code for arbitrary .tml (TCL) files
all versions
Lyris ListManager before 8.9b allows remote attackers to obtain sensitive information via a request to the TCLHTTPd status module,
all versions
The MSDE version of Lyris ListManager 5.0 through 8.9b configures the sa account in the database to use a password with a small se
all versions
Lyris ListManager 5.0 through 8.9a allows remote attackers to add "ORDER BY" columns to SQL queries via unusual whitespace charact
all versions
SQL injection vulnerability in Lyris ListManager 5.0 through 8.9a allows remote attackers to execute arbitrary SQL commands via SQ
all versions
The web interface for subscribing new users in Lyris ListManager 5.0 through 8.8b, in combination with a line wrap feature, allows
<= 2.96
Buffer overflow in listmanager earlier than 2.105.1 allows local users to gain additional privileges.
all versions
The web interface for Lyris List Manager 3 and 4 allows list subscribers to obtain administrative access by modifying the value of