CVE-2013-6275: CSRF
Multiple CSRF issues in Horde Groupware Webmail Edition 5.1.2 and earlier in basic.php.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2013-6275?
CVE-2013-6275 is a vulnerability in Horde Groupware Webmail Edition 5.1.2 and earlier in basic.php.
What is the severity of CVE-2013-6275?
The severity of CVE-2013-6275 is medium with a CVSS score of 6.5.
Which software is affected by CVE-2013-6275?
Horde Groupware Webmail Edition 5.1.2 and earlier is affected by CVE-2013-6275, as well as Debian Linux version 8.0, 9.0, and 10.0.
How do I fix CVE-2013-6275?
To fix CVE-2013-6275, update to version 3.2.16-3, 3.2.16-8, or 3.2.16-9 of the php-horde-ingo package on Debian Linux. Additionally, make sure to update to a patched version of Horde Groupware Webmail Edition if available.
Where can I find more information about CVE-2013-6275?
You can find more information about CVE-2013-6275 at the following references: [1] https://security-tracker.debian.org/tracker/CVE-2013-6275 [2] http://archives.neohapsis.com/archives/bugtraq/2013-10/0134.html [3] http://www.exploit-db.com/exploits/29274