Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2008-4182

Опубликовано: 23 сент. 2008
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.3

Описание

Cross-site scripting (XSS) vulnerability in imp/test.php in Horde Turba Contact Manager H3 2.2.1 and other versions before 2.3.1, and possibly other Horde Project products, allows remote attackers to inject arbitrary web script or HTML via the User field in an IMAP session.

РелизСтатусПримечание
dapper

ignored

end of life
devel

not-affected

feisty

ignored

end of life, was needs-triage
gutsy

ignored

end of life, was needs-triage
hardy

ignored

end of life
intrepid

ignored

end of life, was needs-triage
jaunty

not-affected

4.2-4
karmic

not-affected

lucid

not-affected

maverick

not-affected

Показывать по

РелизСтатусПримечание
dapper

ignored

end of life
devel

not-affected

feisty

ignored

end of life, was needs-triage
gutsy

ignored

end of life, was needs-triage
hardy

ignored

end of life
intrepid

ignored

end of life, was needs-triage
jaunty

not-affected

2.2.1-2
karmic

not-affected

2.3.1-1
lucid

not-affected

maverick

not-affected

Показывать по

Ссылки на источники

EPSS

Процентиль: 62%
0.00441
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

redhat
почти 17 лет назад

Cross-site scripting (XSS) vulnerability in imp/test.php in Horde Turba Contact Manager H3 2.2.1 and other versions before 2.3.1, and possibly other Horde Project products, allows remote attackers to inject arbitrary web script or HTML via the User field in an IMAP session.

nvd
почти 17 лет назад

Cross-site scripting (XSS) vulnerability in imp/test.php in Horde Turba Contact Manager H3 2.2.1 and other versions before 2.3.1, and possibly other Horde Project products, allows remote attackers to inject arbitrary web script or HTML via the User field in an IMAP session.

debian
почти 17 лет назад

Cross-site scripting (XSS) vulnerability in imp/test.php in Horde Turb ...

github
больше 3 лет назад

Cross-site scripting (XSS) vulnerability in imp/test.php in Horde Turba Contact Manager H3 2.2.1 and other versions before 2.3.1, and possibly other Horde Project products, allows remote attackers to inject arbitrary web script or HTML via the User field in an IMAP session.

EPSS

Процентиль: 62%
0.00441
Низкий

4.3 Medium

CVSS2