Vulnerabilities > CVE-2008-7218 - Unspecified vulnerability in Horde products
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN horde
nessus
Summary
Unspecified vulnerability in the Horde API in Horde 3.1 before 3.1.6 and 3.2 before 3.2 before 3.2-RC2; Turba H3 2.1 before 2.1.6 and 2.2 before 2.2-RC2; Kronolith H3 2.1 before 2.1.7 and H3 2.2 before 2.2-RC2; Nag H3 2.1 before 2.1.4 and 2.2 before 2.2-RC2; Mnemo H3 2.1 before 2.1.2 and 2.2 before 2.2-RC2; Horde Groupware 1.0 before 1.0.3 and 1.1 before 1.1-RC2; and Groupware Webmail Edition 1.0 before 1.0.4 and 1.1 before 1.1-RC2 has unknown impact and attack vectors.
Vulnerable Configurations
Nessus
NASL family | Fedora Local Security Checks |
NASL id | FEDORA_2008-2212.NASL |
description | Fix privilege escalation in Horde API. Fix missing ownership validation on share changes. Note that Tenable Network Security has extracted the preceding description block directly from the Fedora security advisory. Tenable has attempted to automatically clean and format it as much as possible without introducing additional issues. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 31367 |
published | 2008-03-07 |
reporter | This script is Copyright (C) 2008-2019 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/31367 |
title | Fedora 7 : kronolith-2.1.7-1.fc7 (2008-2212) |
References
- http://lists.horde.org/archives/announce/2008/000360.html
- http://lists.horde.org/archives/announce/2008/000360.html
- http://lists.horde.org/archives/announce/2008/000361.html
- http://lists.horde.org/archives/announce/2008/000361.html
- http://lists.horde.org/archives/announce/2008/000362.html
- http://lists.horde.org/archives/announce/2008/000362.html
- http://lists.horde.org/archives/announce/2008/000363.html
- http://lists.horde.org/archives/announce/2008/000363.html
- http://lists.horde.org/archives/announce/2008/000364.html
- http://lists.horde.org/archives/announce/2008/000364.html
- http://lists.horde.org/archives/announce/2008/000365.html
- http://lists.horde.org/archives/announce/2008/000365.html
- http://lists.horde.org/archives/announce/2008/000366.html
- http://lists.horde.org/archives/announce/2008/000366.html
- http://lists.horde.org/archives/announce/2008/000367.html
- http://lists.horde.org/archives/announce/2008/000367.html
- http://lists.horde.org/archives/announce/2008/000368.html
- http://lists.horde.org/archives/announce/2008/000368.html
- http://lists.horde.org/archives/announce/2008/000369.html
- http://lists.horde.org/archives/announce/2008/000369.html
- http://lists.horde.org/archives/announce/2008/000371.html
- http://lists.horde.org/archives/announce/2008/000371.html
- http://lists.horde.org/archives/announce/2008/000374.html
- http://lists.horde.org/archives/announce/2008/000374.html
- http://lists.horde.org/archives/announce/2008/000376.html
- http://lists.horde.org/archives/announce/2008/000376.html
- http://lists.horde.org/archives/announce/2008/000377.html
- http://lists.horde.org/archives/announce/2008/000377.html
- http://secunia.com/advisories/28382
- http://secunia.com/advisories/28382
- http://www.osvdb.org/42775
- http://www.osvdb.org/42775
- http://www.securityfocus.com/bid/27217
- http://www.securityfocus.com/bid/27217
- https://exchange.xforce.ibmcloud.com/vulnerabilities/39599
- https://exchange.xforce.ibmcloud.com/vulnerabilities/39599
- https://www.redhat.com/archives/fedora-package-announce/2008-March/msg00176.html
- https://www.redhat.com/archives/fedora-package-announce/2008-March/msg00176.html