4.3
CVSSv2

CVE-2014-4945

Published: 14/07/2014 Updated: 14/07/2014
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in Horde Internet Mail Program (IMP) prior to 6.1.8, as used in Horde Groupware Webmail Edition prior to 5.1.5, allow remote malicious users to inject arbitrary web script or HTML via an unspecified flag in the basic (1) mailbox or (2) message view.

Vulnerable Product Search on Vulmon Subscribe to Product

horde groupware

horde groupware 5.1.3

horde groupware 5.1.2

horde groupware 5.1.1

horde groupware 5.1.0

horde internet mail program 6.1.3

horde internet mail program 6.1.2

horde internet mail program 6.1.1

horde internet mail program 6.1.0

horde internet mail program 6.0.0

horde groupware 5.0.2

horde groupware 5.0.1

horde groupware 5.0.0

horde internet mail program 6.0.5

horde internet mail program 6.0.4

horde internet mail program 6.0.3

horde internet mail program 6.0.2

horde internet mail program 6.0.1

horde groupware 5.0.4

horde internet mail program 6.1.6

horde internet mail program 6.1.4

horde groupware 5.0.5

horde groupware 5.0.3

horde internet mail program

horde internet mail program 6.1.5

horde internet mail program 6.0.6