10

CVE-2008-7219

Horde Kronolith H3 2.1 before 2.1.7 and 2.2 before 2.2-RC2; Nag H3 2.1 before 2.1.4 and 2.2 before 2.2-RC2; Mnemo H3 2.1 before 2.1.2 and H3 2.2 before 2.2-RC2; Groupware 1.0 before 1.0.3 and 1.1 before 1.1-RC2; and Groupware Webmail Edition 1.0 before 1.0.4 and 1.1 before 1.1-RC2 does not validate ownership when performing share changes, which has unknown impact and attack vectors.

Data is provided by the National Vulnerability Database (NVD)
HordeGroupware Version1.0
HordeGroupware Version1.0.1
HordeGroupware Version1.0.2
HordeGroupware Version1.1
HordeGroupware Webmail Edition Version1.0.2
HordeGroupware Webmail Edition Version1.0.3
HordeKronolith H3 Version2.1
HordeKronolith H3 Version2.1.1
HordeKronolith H3 Version2.1.2
HordeKronolith H3 Version2.1.3
HordeKronolith H3 Version2.1.4
HordeKronolith H3 Version2.1.5
HordeKronolith H3 Version2.1.6
HordeKronolith H3 Version2.2
HordeMnemo H3 Version2.1
HordeMnemo H3 Version2.1.1
HordeMnemo H3 Version2.2
HordeNag H3 Version2.1
HordeNag H3 Version2.1.1
HordeNag H3 Version2.1.2
HordeNag H3 Version2.1.3
HordeNag H3 Version2.2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1.07% 0.757
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C