← Back

Horde Mime Viewer

horde_mime_viewer

Vendor: Horde • 1 CVE

CVEs (1)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
2Debian
Horde
2Debian Linux
Horde Mime Viewer
Nov 21, 2024
Mar 11, 2022
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
lib/Horde/Mime/Viewer/Ooo.php in Horde Mime_Viewer before 2.2.4 allows XSS via an OpenOffice document, leading to account takeover in Horde Groupware Webmail Edition. This occurs after XSLT rendering.