CVE-2003-1367 Information

Description

The which_access variable for Majordomo 2.0 through 1.94.4 and possibly earlier versions is set to \open\ by default which allows remote attackers to identify the email addresses of members of mailing lists via a \which\ command.

Reference

http://securityreason.com/securityalert/3235 http://www.securityfocus.com/archive/1/310113 http://www.securityfocus.com/bid/6761 https://exchange.xforce.ibmcloud.com/vulnerabilities/11243

Share on: