Vulnerability index

Browse CVEs

15 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2017-20029EPSS 20% A vulnerability was found in PHPList 3.2.6 and classified as critical. This issue affects some unknown processing of the file /lists/index.php of the… Phplist No fix yet Fix from $2,3002022-06-10 CRITICAL 9.8 CVE-2017-20032 A vulnerability was found in PHPList 3.2.6. It has been rated as critical. Affected by this issue is some unknown functionality of the component Subs… Phplist No fix yet Fix from $2,3002022-06-10 HIGH 7.2 CVE-2017-20030 A vulnerability was found in PHPList 3.2.6. It has been classified as critical. Affected is an unknown function of the file /lists/admin/ of the comp… Phplist No fix yet Fix from $1,9502022-06-10 MEDIUM 6.1 CVE-2017-20033 A vulnerability classified as problematic has been found in PHPList 3.2.6. This affects an unknown part of the file /lists/admin/. The manipulation o… Phplist No fix yet Fix from $1,6002022-06-10 MEDIUM 5.4 CVE-2017-20034 A vulnerability classified as problematic was found in PHPList 3.2.6. This vulnerability affects unknown code of the file /lists/admin/ of the compon… Phplist No fix yet Fix from $1,6002022-06-10 MEDIUM 5.4 CVE-2017-20035 A vulnerability, which was classified as problematic, has been found in PHPList 3.2.6. This issue affects some unknown processing of the file /lists/… Phplist No fix yet Fix from $1,6002022-06-10 MEDIUM 5.4 CVE-2017-20036 A vulnerability, which was classified as problematic, was found in PHPList 3.2.6. Affected is an unknown function of the file /lists/admin/ of the co… Phplist No fix yet Fix from $1,6002022-06-10 CRITICAL 9.8 CVE-2020-22249 Remote Code Execution vulnerability in phplist 3.5.1. The application does not check any file extensions stored in the plugin zip file, Uploading a m… Phplist No fix yet Fix from $2,3002021-07-06 MEDIUM 5.4 CVE-2020-23209 A stored cross site scripting (XSS) vulnerability in phplist 3.5.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload en… Phplist No fix yet Fix from $1,6002021-07-01 MEDIUM 5.4 CVE-2020-23217 A stored cross site scripting (XSS) vulnerability in phplist 3.5.3 allows attackers to execute arbitrary web scripts or HTML via a crafted payload en… Phplist No fix yet Fix from $1,6002021-07-01 CRITICAL 9.8 CVE-2020-23361 phpList 3.5.3 allows type juggling for login bypass because == is used instead of === for password hashes, which mishandles hashes that begin with 0e… Phplist No fix yet Fix from $2,3002021-01-27 CRITICAL 9.8 CVE-2021-3188 phpList 3.6.0 allows CSV injection, related to the email parameter, and /lists/admin/ exports. Phplist No fix yet Fix from $2,3002021-01-26 HIGH 7.2 CVE-2020-35708 phpList 3.5.9 allows SQL injection by admins who provide a crafted fourth line of a file to the "Config - Import Administrators" page. Phplist No fix yet Fix from $1,9502020-12-25 CRITICAL 9.8 CVE-2020-8547EPSS 6% phpList 3.5.0 allows type juggling for admin login bypass because == is used instead of === for password hashes, which mishandles hashes that begin w… Phplist No fix yet Fix from $2,3002020-02-03 MEDIUM 6.8 CVE-2006-5524 Cross-site scripting (XSS) vulnerability in index.php in phplist 2.10.2 allows remote attackers to inject arbitrary web script or HTML via the p para… Phplist No fix yet Fix from $1,6002006-10-26