Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2008-7219

Опубликовано: 13 сент. 2009
Источник: nvd
CVSS2: 10
EPSS Низкий

Описание

Horde Kronolith H3 2.1 before 2.1.7 and 2.2 before 2.2-RC2; Nag H3 2.1 before 2.1.4 and 2.2 before 2.2-RC2; Mnemo H3 2.1 before 2.1.2 and H3 2.2 before 2.2-RC2; Groupware 1.0 before 1.0.3 and 1.1 before 1.1-RC2; and Groupware Webmail Edition 1.0 before 1.0.4 and 1.1 before 1.1-RC2 does not validate ownership when performing share changes, which has unknown impact and attack vectors.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:horde:groupware:1.0:*:*:*:*:*:*:*
cpe:2.3:a:horde:groupware:1.0.1:*:*:*:*:*:*:*
cpe:2.3:a:horde:groupware:1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:horde:groupware:1.1:*:*:*:*:*:*:*
cpe:2.3:a:horde:groupware_webmail_edition:1.0:*:*:*:*:*:*:*
cpe:2.3:a:horde:groupware_webmail_edition:1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:horde:groupware_webmail_edition:1.0.3:*:*:*:*:*:*:*
cpe:2.3:a:horde:groupware_webmail_edition:1.1:*:*:*:*:*:*:*
cpe:2.3:a:horde:kronolith_h3:2.1:*:*:*:*:*:*:*
cpe:2.3:a:horde:kronolith_h3:2.1.1:*:*:*:*:*:*:*
cpe:2.3:a:horde:kronolith_h3:2.1.2:*:*:*:*:*:*:*
cpe:2.3:a:horde:kronolith_h3:2.1.3:*:*:*:*:*:*:*
cpe:2.3:a:horde:kronolith_h3:2.1.4:*:*:*:*:*:*:*
cpe:2.3:a:horde:kronolith_h3:2.1.5:*:*:*:*:*:*:*
cpe:2.3:a:horde:kronolith_h3:2.1.6:*:*:*:*:*:*:*
cpe:2.3:a:horde:kronolith_h3:2.2:*:*:*:*:*:*:*
cpe:2.3:a:horde:mnemo_h3:2.1:*:*:*:*:*:*:*
cpe:2.3:a:horde:mnemo_h3:2.1.1:*:*:*:*:*:*:*
cpe:2.3:a:horde:mnemo_h3:2.2:*:*:*:*:*:*:*
cpe:2.3:a:horde:nag_h3:2.1:*:*:*:*:*:*:*
cpe:2.3:a:horde:nag_h3:2.1.1:*:*:*:*:*:*:*
cpe:2.3:a:horde:nag_h3:2.1.2:*:*:*:*:*:*:*
cpe:2.3:a:horde:nag_h3:2.1.3:*:*:*:*:*:*:*
cpe:2.3:a:horde:nag_h3:2.2:*:*:*:*:*:*:*

EPSS

Процентиль: 76%
0.01003
Низкий

10 Critical

CVSS2

Дефекты

CWE-264

Связанные уязвимости

ubuntu
больше 16 лет назад

Horde Kronolith H3 2.1 before 2.1.7 and 2.2 before 2.2-RC2; Nag H3 2.1 before 2.1.4 and 2.2 before 2.2-RC2; Mnemo H3 2.1 before 2.1.2 and H3 2.2 before 2.2-RC2; Groupware 1.0 before 1.0.3 and 1.1 before 1.1-RC2; and Groupware Webmail Edition 1.0 before 1.0.4 and 1.1 before 1.1-RC2 does not validate ownership when performing share changes, which has unknown impact and attack vectors.

debian
больше 16 лет назад

Horde Kronolith H3 2.1 before 2.1.7 and 2.2 before 2.2-RC2; Nag H3 2.1 ...

github
больше 3 лет назад

Horde Kronolith H3 2.1 before 2.1.7 and 2.2 before 2.2-RC2; Nag H3 2.1 before 2.1.4 and 2.2 before 2.2-RC2; Mnemo H3 2.1 before 2.1.2 and H3 2.2 before 2.2-RC2; Groupware 1.0 before 1.0.3 and 1.1 before 1.1-RC2; and Groupware Webmail Edition 1.0 before 1.0.4 and 1.1 before 1.1-RC2 does not validate ownership when performing share changes, which has unknown impact and attack vectors.

EPSS

Процентиль: 76%
0.01003
Низкий

10 Critical

CVSS2

Дефекты

CWE-264