Lyris / Listmanager
6 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2005-4149 | Lyris ListManager 8.8 through 8.9b allows remote attackers to obtain sensitive information by causing errors in TML scripts, such as via direct requests, which… | MEDIUM | 5.0 | Dec 10, 2005 |
| CVE-2005-4148 | Lyris ListManager 8.5, and possibly other versions before 8.8, includes sensitive information in the env hidden variable, which allows remote attackers to obta… | MEDIUM | 5.0 | Dec 10, 2005 |
| CVE-2005-4147 | The TCLHTTPd service in Lyris ListManager before 8.9b allows remote attackers to obtain source code for arbitrary .tml (TCL) files via (1) a request with a tra… | MEDIUM | 6.5 | Dec 10, 2005 |
| CVE-2005-4146 | Lyris ListManager before 8.9b allows remote attackers to obtain sensitive information via a request to the TCLHTTPd status module, which provides sensitive ser… | MEDIUM | 5.0 | Dec 10, 2005 |
| CVE-2005-4145 | The MSDE version of Lyris ListManager 5.0 through 8.9b configures the sa account in the database to use a password with a small search space ("lyris" and up to… | MEDIUM | 6.5 | Dec 10, 2005 |
| CVE-2005-4142 | The web interface for subscribing new users in Lyris ListManager 5.0 through 8.8b, in combination with a line wrap feature, allows remote attackers to execute… | HIGH | 7.5 | Dec 10, 2005 |
Showing 1 to 6 of 6 CVEs