CVE-2012-6620: XSS
Multiple cross-site scripting (XSS) vulnerabilities in the (1) tasks and (2) search views in Horde Kronolith H4 before 3.0.17 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2012-6620?
CVE-2012-6620 is classified as a moderate severity vulnerability affecting multiple versions of Horde Kronolith H4.
How do I fix CVE-2012-6620?
To fix CVE-2012-6620, you need to update Horde Kronolith H4 to version 3.0.17 or later.
What kind of vulnerabilities are associated with CVE-2012-6620?
CVE-2012-6620 involves multiple cross-site scripting (XSS) vulnerabilities that allow remote attackers to inject arbitrary web scripts or HTML.
Which versions of Horde Kronolith H4 are affected by CVE-2012-6620?
CVE-2012-6620 affects all versions of Horde Kronolith H4 prior to 3.0.17.
Can CVE-2012-6620 lead to data breaches?
Yes, CVE-2012-6620 can potentially lead to data breaches by allowing attackers to execute malicious scripts in the context of users' sessions.