Lyris-technologies-inc
6 CVEs tracked since 2005. Since Dec 2005, none of them reached CISA KEV.
Lyris-technologies-inc CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2005-12 | 6 | 0 |
Products
The products that kept showing up in Lyris-technologies-inc's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 6 most recently published vulnerabilities affecting Lyris-technologies-inc.
- CVE-2005-4148Lyris ListManager 8.5, and possibly other versions before 8.8, includes sensitive information in the env hidden variable, which allows remote attackers to obtain information such as the installatio...5.0
- CVE-2005-4149Lyris ListManager 8.8 through 8.9b allows remote attackers to obtain sensitive information by causing errors in TML scripts, such as via direct requests, which leaks the installation path, SQL quer...5.0
- CVE-2005-4142The web interface for subscribing new users in Lyris ListManager 5.0 through 8.8b, in combination with a line wrap feature, allows remote attackers to execute arbitrary list administration commands...7.5
- CVE-2005-4147The TCLHTTPd service in Lyris ListManager before 8.9b allows remote attackers to obtain source code for arbitrary .tml (TCL) files via (1) a request with a trailing null byte (%00), which might als...6.5
- CVE-2005-4146Lyris ListManager before 8.9b allows remote attackers to obtain sensitive information via a request to the TCLHTTPd status module, which provides sensitive server configuration information.5.0
- CVE-2005-4145The MSDE version of Lyris ListManager 5.0 through 8.9b configures the sa account in the database to use a password with a small search space ("lyris" and up to 5 digits, possibly from the process I...6.5
The record
- Peak rank
- #9 in Dec 2005
- Busiest month shown
- Dec 2005, 6 CVEs
- Months with a KEV entry
- 0 since Dec 2005
- Monthly snapshots
- 1 since 2005