Description
GNU Mailman before 2.1.35 may allow remote Privilege Escalation. A certain csrf_token value is derived from the admin password, and may be useful in conducting a brute-force attack against that password.
Remediation
References
Related Vulnerabilities
SharePoint CVE-2020-16979 Vulnerability (CVE-2020-16979)
WordPress Plugin Slickr Flickr Cross-Site Scripting (2.8.1)
MySQL CVE-2018-2576 Vulnerability (CVE-2018-2576)
Oracle JRE CVE-2013-2472 Vulnerability (CVE-2013-2472)
Joomla Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2018-15882)