PT-2009-6537 · Phpgroupware · Phpgroupware

Moritz Muehlenhoff

·

Publicado

2009-12-24

·

Atualizado

2017-08-17

·

CVE-2009-4416

CVSS v2.0

4.3

Média

VetorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions phpGroupWare versions 0.9.16.12 through 0.9.16.013
Description The issue is related to a cross-site scripting (XSS) vulnerability. This vulnerability allows remote attackers to inject arbitrary web script or HTML via an arbitrary parameter whose name begins with the phpgw sequence.
Recommendations For phpGroupWare versions 0.9.16.12 through 0.9.16.013, update to version 0.9.16.014 or later to resolve the issue.

Correção

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2009-4416
DSA-1978-1

Produtos afetados

Phpgroupware