CVE-2014-5188: Lyris List Manager

Medium severity, CVSS 4.3. EPSS: 1.9% chance of exploitation in the next 30 days.

Cross-site scripting (XSS) vulnerability in doemailpassword.tml in Lyris ListManager (LM) 8.95a allows remote attackers to inject arbitrary web script or HTML via the EmailAddr parameter.

Affected products

  • Lyris List Manager: version 8.95a only

Published 2014-08-07. Last modified 2026-06-17.