Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2005-0202

Directory traversal vulnerability in the true_path function in private.py for Mailman 2.1.5 and earlier allows remote attackers to read arbitrary files via ".../....///" sequences, which are not properly cleansed by regular expressions that are intended to remove "../" and "./" sequences.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.027
EPSS Ranking 85.4%
CVSS Severity
CVSS v2 Score 5.0
References
Products affected by CVE-2005-0202
  • Gnu » Mailman » Version: 2.1
    cpe:2.3:a:gnu:mailman:2.1
  • Gnu » Mailman » Version: 2.1.1
    cpe:2.3:a:gnu:mailman:2.1.1
  • Gnu » Mailman » Version: 2.1.2
    cpe:2.3:a:gnu:mailman:2.1.2
  • Gnu » Mailman » Version: 2.1.3
    cpe:2.3:a:gnu:mailman:2.1.3
  • Gnu » Mailman » Version: 2.1.4
    cpe:2.3:a:gnu:mailman:2.1.4
  • Gnu » Mailman » Version: 2.1.5
    cpe:2.3:a:gnu:mailman:2.1.5
  • Gnu » Mailman » Version: 2.1b1
    cpe:2.3:a:gnu:mailman:2.1b1


Contact Us

Shodan ® - All rights reserved