PublicDate: 2006-04-11 19:06:00 UTC Candidate: CVE-2006-1712 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-1712 Description: Cross-site scripting (XSS) vulnerability in the private archive script (private.py) in GNU Mailman 2.1.7 allows remote attackers to inject arbitrary web script or HTML via the action argument. Ubuntu-Description: Notes: Priority: untriaged Discovered-by: Assigned-to: CVSS: Bugs: upstream_mailman: released (2.1.8) dapper_mailman: not-affected (only 2.1.7) edgy_mailman: released (2.1.8-2ubuntu2) feisty_mailman: released (2.1.8-2ubuntu2) devel_mailman: released (2.1.8-2ubuntu2)