ソフト名:Horde IMP 4.0~4.3.7
回避策:あり
脆弱性:XSS, 認証資格情報の奪取
ソース:http://archives.neohapsis.com/archives/bugtraq/2010-09/0206.html
http://git.horde.org/diff.php/imp/fetchmailprefs.php?rt=horde&r1=1.39.4.10&r2=1.39.4.11
http://www.horde.org/
http://www.securityfocus.com/bid/43515
http://www.vupen.com/english/advisories/2010/2513
危険性:Medium Risk
2010-09-29
2010-05-26
Horde IMP
ソフト名:Horde IMP 2.0.8~4.3.2
回避策:未対応
脆弱性:機密情報の奪取
ソース:http://www.horde.org/imp/
http://conference.hitb.org/hitbsecconf2010dxb/materials/D1%20-%20Laurent%20Oudot%20-%20Improving%20the%20Stealthiness%20of%20Web%20Hacking.pdf#page=74
http://www.securityfocus.com/bid/40294
危険性:Low Risk
回避策:未対応
脆弱性:機密情報の奪取
ソース:http://www.horde.org/imp/
http://conference.hitb.org/hitbsecconf2010dxb/materials/D1%20-%20Laurent%20Oudot%20-%20Improving%20the%20Stealthiness%20of%20Web%20Hacking.pdf#page=74
http://www.securityfocus.com/bid/40294
危険性:Low Risk
登録:
投稿 (Atom)