Mailman Improper Restriction of Excessive Authentication Attempts Vulnerability (CVE-2021-42096)
Description
GNU Mailman before 2.1.35 may allow remote Privilege Escalation. A certain csrf_token value is derived from the admin password, and may be useful in conducting a brute-force attack against that password.