Inoutmailinglistmanager is a niche mailing-list management application with a very limited vulnerability surface. The observed disclosures lack clear categorization under standard weakness frameworks, reflecting the sparse and generalized nature of the available vulnerability data for this vendor. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Inoutmailinglistmanager over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-2004HIGH Multiple SQL injection vulnerabilities in InoutMailingListManager 3.1 and earlier allow remote attackers to execute arbitrary SQL commands via the id parameter to changename.php an | Apr 12, 2007 | 7.5 | 35 | NO | YES |
CVE-2007-2002MEDIUM InoutMailingListManager 3.1 and earlier allows remote attackers to access certain restricted functionality, and upload and execute arbitrary PHP code, by setting an arbitrary admin | Apr 12, 2007 | 6.8 | 34 | NO | YES |
CVE-2007-2003MEDIUM InoutMailingListManager 3.1 and earlier sends a Location redirect header but does not exit after an authorization check fails, which allows remote attackers to access certain restr | Apr 12, 2007 | 6.8 | 34 | NO | YES |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Inoutmailinglistmanager.
Media articles that mention a CVE ID that affects a product developed by Inoutmailinglistmanager — matched by CVE ID, not by vendor name.