CVE-2005-4190
Published Dec 13, 2005
Last updated 13 years ago
Overview
- Description
- Multiple cross-site scripting (XSS) vulnerabilities in Horde Application Framework before 3.0.8 allow remote authenticated users to inject arbitrary web script or HTML via multiple vectors, as demonstrated by (1) the identity field, (2) Category and (3) Label search fields, (4) the Mobile Phone field, and (5) Date and (6) Time fields when importing CSV files, as exploited through modules such as (a) Turba Address Book, (b) Kronolith, (c) Mnemo, and (d) Nag.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 3.5
- Impact score
- 2.9
- Exploitability score
- 6.8
- Vector string
- AV:N/AC:M/Au:S/C:N/I:P/A:N
Weaknesses
- nvd@nist.gov
- CWE-79
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:horde:horde_application_framework:1.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6E5634E1-5D6B-4F64-99F6-5F650EC2E13B" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:1.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7AF6FC53-D300-4A40-8D82-D174F6472DFD" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:1.0.2_1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "72E510AF-4FC2-4872-8844-2021CB72BEA7" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:1.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0895A4FC-4755-4125-822D-6D5A81C8EBC9" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:1.0.3_2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0BDEA1EC-DBD3-4255-873B-577554888E3F" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:1.0.3_3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "63D4182B-7A01-49D0-A192-4D67E64AD62F" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:1.0.3_4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "156B7704-72B9-4A19-A541-382E3362ACC3" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:1.0.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FAE22A26-6DF7-4EBA-8D76-24AC69B4ECD4" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:1.0.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "166F65FA-CF60-48DB-A717-448FB84AD24C" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:1.0.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8EA9E158-EF45-4468-935B-1FFA5C511874" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:1.0.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "50B37F3D-920B-4953-BFF3-197ADD554E82" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:1.0.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3B131407-A29A-4140-A884-FADFE39CDBA8" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:1.0.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D6AE0227-3E50-4137-8287-45154AD6AD79" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:1.0.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2A04BEC0-BFDC-4630-B98D-8924F2336EC4" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:1.2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1DCEC5BC-19CD-4C86-8963-4969718AEDC1" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:1.2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B76253CE-3A05-40F2-9AC2-11FA1C83E12A" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:1.2.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5DB6E8FC-E9F2-4194-B877-90ED6BCA8152" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:1.2.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8CE54204-8E8B-4B3D-BE10-3ECE4DBB8428" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:1.2.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B159D53E-0F6D-41AA-A3D2-B77BA18735CD" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:1.2.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3CD03C5F-423A-475C-8D0C-4F578E93542B" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:1.2.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0CF6B69C-B7E7-4EEA-A18B-2B6969F26A9E" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:1.2.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B94258B3-CC62-41CD-987C-75868208F8C4" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:1.2.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A276A013-CCF3-4AF5-973F-FD68CC9E2291" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:1.3.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5EB2DBC9-0934-4BA2-A6E0-CF1BCB1E0E8E" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:1.3.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "362CDCE7-16DA-4951-81ED-5B858126E37A" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C64FB724-0978-48E1-94AA-2ED5281C1C2F" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9535A094-9B6F-4E17-8097-D7A6D8936F8F" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:2.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7F473B48-F48A-4B6B-8D69-1F97BB6AA923" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:2.2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C8E1A7DB-906F-4973-BF1C-EFFA0B595A42" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:2.2.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DA9E6EB8-B5E5-41DF-B5E2-0A97448D16A0" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:2.2.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "36BEAB4E-04DA-4EDD-990C-697EA0984291" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:2.2.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "142B9B05-955E-4688-AF6E-ED7B4FE41846" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:2.2.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "295D48BB-F143-4047-B366-74101AB983CC" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:2.2.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "58431B48-EA29-4A6F-B9FF-C416924E63B8" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:2.2.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "61064C18-0E45-4790-B323-262287D8DE34" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:2.2.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CCFF25C4-03F2-4D65-ABA9-2406957D546E" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:3.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CA0A882D-9BEB-4A3C-9371-69260374E0B6" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:3.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A17E3AFB-849F-463D-96E8-686B049F48DC" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:3.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "047563A7-5F6A-4DE2-8518-88E4E6EEB7D1" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:3.0.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "78356C5F-A76E-4CB1-894D-0D882A665096" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:3.0.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A0405EC4-12DA-4F15-A5B0-799D399C759E" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:3.0.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A1C1DE26-E7B2-4A4E-9F6D-4206F7BC5EBD" }, { "criteria": "cpe:2.3:a:horde:horde_application_framework:3.0.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6ED629B0-A214-47B5-9767-B47AFB154AFD" } ], "operator": "OR" } ] } ]