Horde Gollem 1.1.2

CPE Details

Horde Gollem 1.1.2
1.1.2
2011-05-06
15h11 +00:00
2011-05-25
15h36 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:horde:gollem:1.1.2:*:*:*:*:*:*:*

Informations

Vendor

horde

Product

gollem

Version

1.1.2

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2020-8034 2020-05-18 14h07 +00:00 Gollem before 3.0.13, as used in Horde Groupware Webmail Edition 5.2.22 and other products, is affected by a reflected Cross-Site Scripting (XSS) vulnerability via the HTTP GET dir parameter in the browser functionality, affecting breadcrumb output. An attacker can obtain access to a victim's webmail account by making them visit a malicious URL.
6.1
Medium