CVE-2017-15967: Mailing-Manager Mailing List Manager Pro

Critical severity, CVSS 9.8. EPSS: 2.1% chance of exploitation in the next 30 days.

Mailing List Manager Pro 3.0 allows SQL Injection via the edit parameter to admin/users in a sort=login action, or the edit parameter to admin/template.

Affected products

Published 2017-10-29. Last modified 2026-06-17.