CVE-2015-1306: Sympa
Medium severity, CVSS 5.0. EPSS: 2.4% chance of exploitation in the next 30 days.
The newsletter posting area in the web interface in Sympa 6.0.x before 6.0.10 and 6.1.x before 6.1.24 allows remote attackers to read arbitrary files via unspecified vectors.
Affected products
- Sympa Sympa: version 6.0.0 only; version 6.0.1 only; version 6.0.2 only; version 6.0.3 only; version 6.0.4 only; version 6.0.5 only; …
Published 2015-01-22. Last modified 2026-06-17.