PT-2017-5801 · Renaud Dubois Christophe Wolfhugel Others As Part Of The Sympa Community · Sympa

Published

2015-02-26

·

Updated

2015-02-26

·

CVE-2014-1306

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Sympa (affected versions not specified)
Description A security issue has been found in the Sympa web interface, allowing access to files on the server filesystem. This issue enables sending any file readable by the Sympa user, located on the server filesystem, using the Sympa web interface newsletter posting area.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2014-1306
MGASA-2015-0085

Affected Products

Sympa