Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 6.1
CVE-2023-27641
The REPORT (after z but before a) parameter in wa.exe in L-Soft LISTSERV 16.5 before 17 allows an attacker to conduct XSS attacks via a crafted URL.
Listserv
17.0+
HIGH 7.5
CVE-2022-40319EPSS 7%
The LISTSERV 17 web interface allows remote attackers to conduct Insecure Direct Object References (IDOR) attacks via a modified email address in a w…
Listserv
No fix yet
MEDIUM 6.1
CVE-2022-39195EPSS 6%
A cross-site scripting (XSS) vulnerability in the LISTSERV 17 web interface allows remote attackers to inject arbitrary JavaScript or HTML via the c …
Listserv
No fix yet
MEDIUM 6.1
CVE-2019-15501EPSS 7%
Reflected cross site scripting (XSS) in L-Soft LISTSERV before 16.5-2018a exists via the /scripts/wa.exe OK parameter.
Listserv
16.5-2018a+
HIGH 7.5
CVE-2006-1044EPSS 7%
Multiple buffer overflows in LISTSERV 14.3 and 14.4, including LISTSERV Lite and HPO, with the web archive interface enabled, allow remote attackers …
Listserv
Patch available
HIGH 7.5
CVE-2005-1773
Multiple unknown vulnerabilities in L-Soft LISTSERV 14.3, 1.8e, and 1.8d allow remote attackers to execute arbitrary code or cause a denial of servic…
Listserv
Patch available
HIGH 7.5
CVE-2000-0632
Buffer overflow in the web archive component of L-Soft Listserv 1.8d and earlier allows remote attackers to execute arbitrary commands via a long que…
Listserv
Mitigation only
HIGH 10.0
CVE-2000-0425EPSS 6%
Buffer overflow in the Web Archives component of L-Soft LISTSERV 1.8 allows remote attackers to execute arbitrary commands.
Listserv
Mitigation only
HIGH 7.5
CVE-1999-0252
Buffer overflow in listserv allows arbitrary command execution.
Listserv
No fix yet