Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.64883
Kategorie:Gentoo Local Security Checks
Titel:Gentoo Security Advisory GLSA 200909-14 (horde horde-imp horde-passwd)
Zusammenfassung:The remote host is missing updates announced in;advisory GLSA 200909-14.
Beschreibung:Summary:
The remote host is missing updates announced in
advisory GLSA 200909-14.

Vulnerability Insight:
Multiple vulnerabilities have been discovered in Horde and two modules,
allowing for the execution of arbitrary code, information disclosure,
or
Cross-Site Scripting.

Solution:
All Horde users should upgrade to the latest version:

# emerge --sync
# emerge --ask --oneshot --verbose =www-apps/horde-3.3.4

All Horde IMP users should upgrade to the latest version:

# emerge --sync
# emerge --ask --oneshot --verbose =www-apps/horde-imp-4.3.4

All Horde Passwd users should upgrade to the latest version:

# emerge --sync
# emerge --ask --oneshot --verbose =www-apps/horde-passwd-3.1.1

CVSS Score:
6.4

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:P/A:N

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2008-5917
34418
http://secunia.com/advisories/34418
34609
http://secunia.com/advisories/34609
SUSE-SR:2009:007
http://lists.opensuse.org/opensuse-security-announce/2009-03/msg00004.html
[announce] Horde 3.2.3 (final)
http://lists.horde.org/archives/announce/2008/000462.html
[announce] Horde 3.3.1 (final)
http://lists.horde.org/archives/announce/2008/000464.html
http://cvs.horde.org/diff.php/framework/Text_Filter/Filter/xss.php?r1=1.17&r2=1.18
Common Vulnerability Exposure (CVE) ID: CVE-2009-0930
BugTraq ID: 33492
http://www.securityfocus.com/bid/33492
Debian Security Information: DSA-1770 (Google Search)
http://www.debian.org/security/2009/dsa-1770
http://lists.horde.org/archives/announce/2009/000484.html
http://lists.horde.org/archives/announce/2009/000485.html
http://secunia.com/advisories/33719
http://secunia.com/advisories/34703
SuSE Security Announcement: SUSE-SR:2009:007 (Google Search)
Common Vulnerability Exposure (CVE) ID: CVE-2009-0931
BugTraq ID: 33491
http://www.securityfocus.com/bid/33491
http://lists.horde.org/archives/announce/2009/000483.html
http://lists.horde.org/archives/announce/2009/000482.html
http://lists.horde.org/archives/announce/2009/000486.html
http://secunia.com/advisories/33695
Common Vulnerability Exposure (CVE) ID: CVE-2009-0932
http://securityreason.com/securityalert/8077
Common Vulnerability Exposure (CVE) ID: CVE-2009-2360
BugTraq ID: 35573
http://www.securityfocus.com/bid/35573
Debian Security Information: DSA-1829 (Google Search)
http://www.debian.org/security/2009/dsa-1829
http://lists.horde.org/archives/announce/2009/000507.html
http://secunia.com/advisories/35720
http://secunia.com/advisories/35769
http://www.vupen.com/english/advisories/2009/1784
XForce ISS Database: passwd-main-xss(51542)
https://exchange.xforce.ibmcloud.com/vulnerabilities/51542
CopyrightCopyright (C) 2009 E-Soft Inc.

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.