This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Summuary
CPE Namecpe:/a:horde:groupware:1.1
Detail
VendorHordeFirst view 2009-09-13
ProductGroupwareLast view 2009-12-21
Version1.1TypeApplication
Edition 
Language 
Update 
 
CPE Productcpe:/a:horde:groupware

Activity : Yearly

Related : CVE

 DateAlertAccess VectorAccess ComplexityAuthentification
4.32009-12-21CVE-2009-4363NetworkMediumNone Requ...
4.32009-12-21CVE-2009-3701NetworkMediumNone Requ...
4.32009-09-17CVE-2009-3236NetworkMediumNone Requ...
102009-09-13CVE-2008-7219NetworkLowNone Requ...
102009-09-13CVE-2008-7218NetworkLowNone Requ...

CWE : Common Weakness Enumeration

%idName
66% (2)CWE-79Failure to Preserve Web Page Structure ('Cross-site Scripting')
33% (1)CWE-264Permissions, Privileges, and Access Controls

Open Source Vulnerability Database (OSVDB)

idDescription
61338Horde Xss.php Filter Bypass data:// URI XSS
61304Horde Administration Interface admin/sqlshell.php PATH_INFO Parameter XSS
61303Horde Administration Interface admin/cmdshell.php PATH_INFO Parameter XSS
61043Horde Administration Interface admin/phpshell.php PATH_INFO Parameter XSS
58107Horde Application Framework Form Library Image Form Field Arbitrary File Over...
Hide | Show 2 More...
idDescription
42776Horde Multiple Products Share Management Owner Validation Unspecified Issue
42775Horde Multiple Products API Unspecified Privilege Escalation

ExploitDB Exploits

idDescription
10512Horde 3.3.5 "PHP_SELF" XSS vulnerability