Summary
The remote host is missing an update to ecartis
announced via advisory DSA 572-1.
Solution
https://secure1.securityspace.com/smysecure/catid.html?in=DSA%20572-1
Insight
A problem has been discovered in ecartis, a mailing-list manager, which allows an attacker in the same domain as the list admin to gain administrator privileges and alter list settings.
For the stable distribution (woody) this problem has been fixed in version 0.129a+1.0.0-snap20020514-1.3.
For the unstable distribution (sid) this problem has been fixed in version 1.0.0+cvs.20030911-8.
We recommend that you upgrade your ecartis package.
Severity
Classification
-
CVE CVE-2004-0913 -
CVSS Base Score: 4.6
AV:L/AC:L/Au:N/C:P/I:P/A:P
Related Vulnerabilities