CVE-2012-0909
openSUSE Security Advisory - openSUSE-SU-2012:0286-1
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
Cross-site scripting (XSS) vulnerability in Horde_Form in Horde Groupware Webmail Edition before 4.0.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related to email verification. NOTE: Some of these details are obtained from third party information.
Vulnerbilidad de ejecución de secuencias de comandos web en sitios cruzados (XSS) en Horde_Form en Horde Groupware Webmail Edition anterior a v4.0.6 permite a atacantes remotos inyectar código HTML o script web a través de vectores no especificados, relacionados con una verificación de correo. NOTA: Algunos de estos detalles han sido obtenidos de terceras partes de información.
An update that fixes one vulnerability is now available. This version upgrade of horde3 to 3.3.13 fixes several issues and adds new features.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2012-01-21 CVE Reserved
- 2012-01-24 CVE Published
- 2024-09-17 CVE Updated
- 2024-09-17 First Exploit
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CAPEC
References (5)
URL | Tag | Source |
---|---|---|
http://www.horde.org/apps/webmail/docs/CHANGES | X_refsource_confirm | |
http://www.horde.org/apps/webmail/docs/RELEASE_NOTES | X_refsource_confirm | |
http://www.openwall.com/lists/oss-security/2012/01/22/2 | Mailing List |
|
URL | Date | SRC |
---|---|---|
http://www.securityfocus.com/bid/51586 | 2024-09-17 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://secunia.com/advisories/47592 | 2012-01-26 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | <= 4.0.5 Search vendor "Horde" for product "Groupware Webmail Edition" and version " <= 4.0.5" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.0 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.0" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.0 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.0" | rc1 |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.0 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.0" | rc2 |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.0.1 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.0.1" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.0.2 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.0.2" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.0.3 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.0.3" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.0.4 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.0.4" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.0.5 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.0.5" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.0.6 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.0.6" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.0.7 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.0.7" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.0.8 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.0.8" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.1 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.1" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.1 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.1" | rc1 |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.1 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.1" | rc2 |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.1 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.1" | rc3 |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.1 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.1" | rc4 |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.1.1 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.1.1" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.1.2 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.1.2" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.1.3 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.1.3" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.1.4 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.1.4" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.1.5 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.1.5" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.1.6 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.1.6" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.2 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.2" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.2 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.2" | rc1 |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.2.1 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.2.1" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.2.2 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.2.2" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.2.3 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.2.3" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.2.3 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.2.3" | rc1 |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.2.4 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.2.4" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.2.5 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.2.5" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.2.6 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.2.6" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.2.7 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.2.7" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.2.8 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.2.8" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.2.9 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.2.9" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 1.2.10 Search vendor "Horde" for product "Groupware Webmail Edition" and version "1.2.10" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 4.0 Search vendor "Horde" for product "Groupware Webmail Edition" and version "4.0" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 4.0 Search vendor "Horde" for product "Groupware Webmail Edition" and version "4.0" | rc1 |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 4.0 Search vendor "Horde" for product "Groupware Webmail Edition" and version "4.0" | rc2 |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 4.0.1 Search vendor "Horde" for product "Groupware Webmail Edition" and version "4.0.1" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 4.0.2 Search vendor "Horde" for product "Groupware Webmail Edition" and version "4.0.2" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 4.0.3 Search vendor "Horde" for product "Groupware Webmail Edition" and version "4.0.3" | - |
Affected
| ||||||
Horde Search vendor "Horde" | Groupware Webmail Edition Search vendor "Horde" for product "Groupware Webmail Edition" | 4.0.4 Search vendor "Horde" for product "Groupware Webmail Edition" and version "4.0.4" | - |
Affected
|