Vulnerability   
Search   
    Search 202850 CVE descriptions
and 87302 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.11973
Category:CGI abuses
Title:BulletScript MailList bsml.pl Information Disclosure
Summary:NOSUMMARY
Description:Description:

The remote host is using BulletScript's bsml.pl, the web interface to a mailing
list manager.

The lack of authentication in this CGI may allow an attacker to gain
control on the email addresses database of the remote mailing list. An attacker
may use it to add or remove an e-mail address or to gather the list of
subscribers to the remote mailing list for spam purposes.

Solution: Disable this CGI
Risk factor : Medium

Cross-Ref: BugTraq ID: 9311
CopyrightThis script is Copyright (C) 2003 Renaud Deraison

This is only one of 87302 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2021 E-Soft Inc. All rights reserved.