CVE-2010-3447
04.04.2011, 12:27
Cross-site scripting (XSS) vulnerability in view.php in the file viewer in Horde Gollem before 1.1.2 allows remote attackers to inject arbitrary web script or HTML via the file parameter in a view_file action.
| Vendor | Product | Version |
|---|---|---|
| horde | gollem | 𝑥 ≤ 1.1.1 |
| horde | gollem | 1.0 |
| horde | gollem | 1.0:alpha |
| horde | gollem | 1.0:beta |
| horde | gollem | 1.0:rc1 |
| horde | gollem | 1.0:rc2 |
| horde | gollem | 1.0.1 |
| horde | gollem | 1.0.1:rc1 |
| horde | gollem | 1.0.2 |
| horde | gollem | 1.0.2:rc1 |
| horde | gollem | 1.0.3 |
| horde | gollem | 1.0.4 |
| horde | gollem | 1.1 |
| horde | gollem | 1.1:rc1 |
𝑥
= Vulnerable software versions
Ubuntu Releases
References