Vulnerabilities
Vulnerable Software
Phplist:  >> Phplist  >> 3.5.0  Security Vulnerabilities
phpList before 3.5.3 allows XSS, with resultant privilege elevation, via lists/admin/template.php.
CVSS Score
6.1
EPSS Score
0.004
Published
2020-05-04
phpList 3.5.0 allows type juggling for admin login bypass because == is used instead of === for password hashes, which mishandles hashes that begin with 0e followed by exclusively numerical characters.
CVSS Score
9.8
EPSS Score
0.031
Published
2020-02-03


Contact Us

Shodan ® - All rights reserved