Lucene search

K
cvelistMitreCVELIST:CVE-2021-42096
HistoryOct 21, 2021 - 12:40 a.m.

CVE-2021-42096

2021-10-2100:40:34
mitre
www.cve.org
6
gnu mailman
privilege escalation
csrf_token
brute-force attack
cve-2021-42096

AI Score

6.2

Confidence

High

EPSS

0.004

Percentile

71.9%

GNU Mailman before 2.1.35 may allow remote Privilege Escalation. A certain csrf_token value is derived from the admin password, and may be useful in conducting a brute-force attack against that password.