Horde Gollem 3.0.5

CPE Details

Horde Gollem 3.0.5
3.0.5
2019-12-05
12h00 +00:00
2019-12-05
12h00 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:horde:gollem:3.0.5:*:*:*:*:*:*:*

Informations

Vendor

horde

Product

gollem

Version

3.0.5

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2020-8034 2020-05-18 14h07 +00:00 Gollem before 3.0.13, as used in Horde Groupware Webmail Edition 5.2.22 and other products, is affected by a reflected Cross-Site Scripting (XSS) vulnerability via the HTTP GET dir parameter in the browser functionality, affecting breadcrumb output. An attacker can obtain access to a victim's webmail account by making them visit a malicious URL.
6.1
Moyen