Skip to content
Noroxi

lyris records

8 published records for vendor lyris.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    All records

    8 records
    • Multiple unspecified vulnerabilities in Lyris ListManager 8.x before 8.95d, 9.2 before 9.2c, and 9.3 before 9.3b allow remote attackers to (

      CriticalCVSS 10.0No exploitEPSS 3%

      lyris · list managerFeb 19, 2008

    • CVE-2005-4144
      31Monitor

      Lyris ListManager 5.0 through 8.9a allows remote attackers to add "ORDER BY" columns to SQL queries via unusual whitespace characters in the

      HighCVSS 7.5No exploitEPSS 2%

      lyris · list managerDec 10, 2005

    • CVE-2005-4143
      30Monitor

      SQL injection vulnerability in Lyris ListManager 5.0 through 8.9a allows remote attackers to execute arbitrary SQL commands via SQL code aft

      HighCVSS 7.5Proof of conceptEPSS 1%

      lyris · list managerDec 10, 2005

    • CVE-2006-4546
      26Monitor

      Lyris ListManager 8.95 allows remote authenticated users, who have administrative privileges for at least one list on the server, to add new

      MediumCVSS 6.5No exploitEPSS 1%

      lyris · list managerSep 5, 2006

    • CVE-2006-4547
      26Monitor

      Lyris ListManager 8.95 allows remote authenticated users to obtain sensitive information by attempting to add a user with a ' (single quote)

      MediumCVSS 6.5No exploitEPSS 1%

      lyris · list managerSep 5, 2006

    • CVE-2014-5188
      18Monitor

      Cross-site scripting (XSS) vulnerability in doemailpassword.tml in Lyris ListManager (LM) 8.95a allows remote attackers to inject arbitrary

      MediumCVSS 4.3No exploitEPSS 2%

      lyris · list managerAug 7, 2014

    • CVE-2000-0758
      18Monitor

      The web interface for Lyris List Manager 3 and 4 allows list subscribers to obtain administrative access by modifying the value of the list_

      MediumCVSS 4.6No exploitEPSS 0%

      lyris · list managerOct 20, 2000

    • CVE-2008-2923
      17Monitor

      Cross-site scripting (XSS) vulnerability in read/search/results in Lyris ListManager 8.8, 8.95, and 9.3d allows remote attackers to inject a

      MediumCVSS 4.3No exploitEPSS 1%

      lyris · list managerJun 30, 2008