[Mailman-Users] Disabling mailman/create Web Page

Barry Finkel b19141 at anl.gov
Fri Sep 4 16:02:58 CEST 2009


Our cyber security group sent me notice of a vulnerability in
a Mailman web page:

     Web Application Potentially Sensitive CGI Parameter Detection

I think it is the URL:

     mailman/create

As I do not use that web page to create a new Mailman list, I want to
disable that page.  Is there an easy way to do it in Mailman, or do I
----------------------------------------------------------------------
Barry S. Finkel
Computing and Information Systems Division
Argonne National Laboratory          Phone:    +1 (630) 252-7277
9700 South Cass Avenue               Facsimile:+1 (630) 252-4601
Building 222, Room D209              Internet: BSFinkel at anl.gov
Argonne, IL   60439-4828             IBMMAIL:  I1004994



More information about the Mailman-Users mailing list