info
discussion
exploit
solution
references
GNU Mailman Private Archive Script Cross-Site Scripting Vulnerability
Solution:
The vendor has released version 2.1.8rc1 to address this issue.
GNU Mailman 2.1.7
GNU mailman-2.1.9rc1.tgz
http://sourceforge.net/project/showfiles.php?group_id=103&package_id=6 9562&release_id=444295
Privacy Statement
Copyright 2010, SecurityFocus