CVE Vulnerabilities

CVE-2008-3650

Published: Aug 13, 2008 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9 HIGH
AV:N/AC:L/Au:S/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

Multiple unspecified vulnerabilities in Horde Groupware Webmail before Edition 1.1.1 (final) have unknown impact and attack vectors related to unescaped output, possibly cross-site scripting (XSS), in the (1) object browser and (2) contact view.

Affected Software

NameVendorStart VersionEnd Version
Groupware_webmail_editionHorde1.0 (including)1.0 (including)
Groupware_webmail_editionHorde1.0.1 (including)1.0.1 (including)
Groupware_webmail_editionHorde1.0.2 (including)1.0.2 (including)
Groupware_webmail_editionHorde1.0.3 (including)1.0.3 (including)
Groupware_webmail_editionHorde1.0.4 (including)1.0.4 (including)
Groupware_webmail_editionHorde1.0.5 (including)1.0.5 (including)
Groupware_webmail_editionHorde1.0.6 (including)1.0.6 (including)
Groupware_webmail_editionHorde1.0.7 (including)1.0.7 (including)
Groupware_webmail_editionHorde1.1 (including)1.1 (including)
Horde3Ubuntudapper*
Horde3Ubuntufeisty*
Horde3Ubuntugutsy*
Horde3Ubuntuhardy*
Horde3Ubuntuupstream*
Turba2Ubuntudapper*
Turba2Ubuntufeisty*
Turba2Ubuntugutsy*
Turba2Ubuntuupstream*

References