cvelist/2008/1xxx/CVE-2008-1974.json
2018-10-11 16:05:44 -04:00

128 lines
3.8 KiB
JSON

{
"CVE_data_meta" : {
"ASSIGNER" : "cve@mitre.org",
"ID" : "CVE-2008-1974",
"STATE" : "PUBLIC"
},
"affects" : {
"vendor" : {
"vendor_data" : [
{
"product" : {
"product_data" : [
{
"product_name" : "n/a",
"version" : {
"version_data" : [
{
"version_value" : "n/a"
}
]
}
}
]
},
"vendor_name" : "n/a"
}
]
}
},
"data_format" : "MITRE",
"data_type" : "CVE",
"data_version" : "4.0",
"description" : {
"description_data" : [
{
"lang" : "eng",
"value" : "Cross-site scripting (XSS) vulnerability in addevent.php in Horde Kronolith 2.1.7, Groupware Webmail Edition 1.0.6, and Groupware 1.0.5 allows remote attackers to inject arbitrary web script or HTML via the url parameter."
}
]
},
"problemtype" : {
"problemtype_data" : [
{
"description" : [
{
"lang" : "eng",
"value" : "n/a"
}
]
}
]
},
"references" : {
"reference_data" : [
{
"name" : "20080422 Horde Webmail XSS [Aria-Security]",
"refsource" : "BUGTRAQ",
"url" : "http://www.securityfocus.com/archive/1/491230/100/0/threaded"
},
{
"name" : "[kronolith] 20080427 Kronolith H3 (2.1.8) (final)",
"refsource" : "MLIST",
"url" : "http://lists.horde.org/archives/kronolith/Week-of-Mon-20080421/006807.html"
},
{
"name" : "http://forum.aria-security.com/showthread.php?t=49",
"refsource" : "MISC",
"url" : "http://forum.aria-security.com/showthread.php?t=49"
},
{
"name" : "DSA-1560",
"refsource" : "DEBIAN",
"url" : "https://www.debian.org/security/2008/dsa-1560"
},
{
"name" : "FEDORA-2008-3460",
"refsource" : "FEDORA",
"url" : "https://www.redhat.com/archives/fedora-package-announce/2008-June/msg00444.html"
},
{
"name" : "FEDORA-2008-3543",
"refsource" : "FEDORA",
"url" : "https://www.redhat.com/archives/fedora-package-announce/2008-June/msg00427.html"
},
{
"name" : "28898",
"refsource" : "BID",
"url" : "http://www.securityfocus.com/bid/28898"
},
{
"name" : "51238",
"refsource" : "OSVDB",
"url" : "http://osvdb.org/51238"
},
{
"name" : "ADV-2008-1373",
"refsource" : "VUPEN",
"url" : "http://www.vupen.com/english/advisories/2008/1373/references"
},
{
"name" : "1019934",
"refsource" : "SECTRACK",
"url" : "http://www.securitytracker.com/id?1019934"
},
{
"name" : "29920",
"refsource" : "SECUNIA",
"url" : "http://secunia.com/advisories/29920"
},
{
"name" : "30649",
"refsource" : "SECUNIA",
"url" : "http://secunia.com/advisories/30649"
},
{
"name" : "3831",
"refsource" : "SREASON",
"url" : "http://securityreason.com/securityalert/3831"
},
{
"name" : "horde-webmail-addevent-xss(41974)",
"refsource" : "XF",
"url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/41974"
}
]
}
}