[28674] in bugtraq
Re: Mailman: cross-site scripting bug
daemon@ATHENA.MIT.EDU (Barry Warsaw)
Mon Jan 27 15:30:18 2003
Date: 26 Jan 2003 21:52:32 -0000
Message-ID: <20030126215232.18137.qmail@mail.securityfocus.com>
Content-Type: text/plain
Content-Disposition: inline
Content-Transfer-Encoding: binary
MIME-Version: 1.0
From: Barry Warsaw <barry@python.org>
To: bugtraq@securityfocus.com
In-Reply-To: <20030124143507.32126.qmail@mail.securityfocus.com>
A fix for this has now been posted. Please see the
xss-2.1.0-patch.txt file referenced here:
http://sourceforge.net/project/showfiles.php?group_id=103
This fix will be part of Mailman 2.1.1 when that
release is ready.