Mailman Improper Neutralization of Special Elements in Output Used by a Downstream Component (Injection) Vulnerability - CVE-2020-15011 - Vulnerability Database

Mailman Improper Neutralization of Special Elements in Output Used by a Downstream Component (Injection) Vulnerability - CVE-2020-15011

Medium
Reference: CVE-2020-15011
Title: Mailman Improper Neutralization of Special Elements in Output Used by a Downstream Component (Injection) Vulnerability
Overview:

GNU Mailman before 2.1.33 allows arbitrary content injection via the Cgi/private.py private archive login page.