Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2009-4896

Multiple directory traversal vulnerabilities in the mlmmj-php-admin web interface for Mailing List Managing Made Joyful (mlmmj) 1.2.15 through 1.2.17 allow remote authenticated users to overwrite, create, or delete arbitrary files, or determine the existence of arbitrary directories, via a .. (dot dot) in a list name in a (1) edit or (2) save action.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.016
EPSS Ranking 81.2%
CVSS Severity
CVSS v2 Score 6.5
References
Products affected by CVE-2009-4896
  • Mlmmj » Mlmmj » Version: 1.2.15
    cpe:2.3:a:mlmmj:mlmmj:1.2.15
  • Mlmmj » Mlmmj » Version: 1.2.16
    cpe:2.3:a:mlmmj:mlmmj:1.2.16
  • Mlmmj » Mlmmj » Version: 1.2.17
    cpe:2.3:a:mlmmj:mlmmj:1.2.17


Contact Us

Shodan ® - All rights reserved