CVE-2008-3650: XSS
Multiple unspecified vulnerabilities in Horde Groupware Webmail before Edition 1.1.1 (final) have unknown impact and attack vectors related to "unescaped output," possibly cross-site scripting (XSS), in the (1) object browser and (2) contact view.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2008-3650?
CVE-2008-3650 is categorized with an unspecified severity, highlighting potential risks associated with multiple vulnerabilities.
How do I fix CVE-2008-3650?
To resolve CVE-2008-3650, upgrade to Horde Groupware Webmail Edition version 1.1.1 or later.
What are the key vulnerabilities associated with CVE-2008-3650?
CVE-2008-3650 includes vulnerabilities related to unescaped output, which may lead to cross-site scripting (XSS) attacks.
Which versions of Horde Groupware Webmail are affected by CVE-2008-3650?
CVE-2008-3650 affects Horde Groupware Webmail versions up to and including 1.1.
What components of Horde Groupware Webmail are impacted by CVE-2008-3650?
CVE-2008-3650 impacts the object browser and contact view components of Horde Groupware Webmail.