CVE-2017-15967: Mailing-Manager Mailing List Manager Pro
Critical severity, CVSS 9.8. EPSS: 2.1% chance of exploitation in the next 30 days.
Mailing List Manager Pro 3.0 allows SQL Injection via the edit parameter to admin/users in a sort=login action, or the edit parameter to admin/template.
Affected products
- Mailing-Manager Mailing List Manager Pro: version 3.0 only
Published 2017-10-29. Last modified 2026-06-17.