Lucene search

K
ubuntucveUbuntu.comUB:CVE-2009-0930
HistoryMar 17, 2009 - 12:00 a.m.

CVE-2009-0930

2009-03-1700:00:00
ubuntu.com
ubuntu.com
9

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

EPSS

0.003

Percentile

71.8%

Multiple cross-site scripting (XSS) vulnerabilities in Horde IMP before
4.2.2 and 4.3.3 allow remote attackers to inject arbitrary web script or
HTML via unspecified vectors to (1) smime.php, (2) pgp.php, and (3)
message.php.

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

EPSS

0.003

Percentile

71.8%