LWN.net Logo

egroupware: multiple vulnerabilities

Package(s):egroupware CVE #(s):
Created:March 12, 2010 Updated:March 17, 2010
Description:

From the Debian advisory:

Nahuel Grisolia discovered two vulnerabilities in Egroupware, a web-based groupware suite: Missing input sanitising in the spellchecker integration may lead to the execution of arbitrary commands and a cross-site scripting vulnerability was discovered in the login page.

Alerts:
Debian DSA-2013-1 2010-03-11

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds