Vulnerabilities (CVE)

Filtered by vendor Horde Subscribe
Filtered by product Horde Mime Viewer
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-26874 2 Debian, Horde 2 Debian Linux, Horde Mime Viewer 2023-12-10 3.5 LOW 5.4 MEDIUM
lib/Horde/Mime/Viewer/Ooo.php in Horde Mime_Viewer before 2.2.4 allows XSS via an OpenOffice document, leading to account takeover in Horde Groupware Webmail Edition. This occurs after XSLT rendering.