Show filters
194 Total Results
Displaying 31-40 of 194
Sort by:
Attacker Value
Unknown

CVE-2019-9858

Disclosure Date: May 29, 2019 (last updated November 27, 2024)
Remote code execution was discovered in Horde Groupware Webmail 5.2.22 and 5.2.17. Horde/Form/Type.php contains a vulnerable class that handles image upload in forms. When the Horde_Form_Type_image method onSubmit() is called on uploads, it invokes the functions getImage() and _getUpload(), which uses unsanitized user input as a path to save the image. The unsanitized POST parameter object[photo][img][file] is saved in the $upload[img][file] PHP variable, allowing an attacker to manipulate the $tmp_file passed to move_uploaded_file() to save the uploaded file. By setting the parameter to (for example) ../usr/share/horde/static/bd.php, one can write a PHP backdoor inside the web root. The static/ destination folder is a good candidate to drop the backdoor because it is always writable in Horde installations. (The unsanitized POST parameter went probably unnoticed because it's never submitted by the forms, which default to securely using a random path.)
Attacker Value
Unknown

CVE-2018-20719

Disclosure Date: January 15, 2019 (last updated November 27, 2024)
In Tiki before 17.2, the user task component is vulnerable to a SQL Injection via the tiki-user_tasks.php show_history parameter.
0
Attacker Value
Unknown

CVE-2018-14849

Disclosure Date: August 13, 2018 (last updated November 27, 2024)
Tiki before 18.2, 15.7 and 12.14 has XSS via link attributes, related to lib/core/WikiParser/OutputLink.php and lib/parser/parserlib.php.
0
Attacker Value
Unknown

CVE-2018-14850

Disclosure Date: August 13, 2018 (last updated November 27, 2024)
Stored XSS vulnerabilities in Tiki before 18.2, 15.7 and 12.14 allow an authenticated user injecting JavaScript to gain administrator privileges if an administrator opens a wiki page and moves the mouse pointer over a modified link or thumb image.
0
Attacker Value
Unknown

CVE-2018-7290

Disclosure Date: March 09, 2018 (last updated November 26, 2024)
Cross Site Scripting (XSS) exists in Tiki before 12.13, 15.6, 17.2, and 18.1.
0
Attacker Value
Unknown

CVE-2018-7303

Disclosure Date: February 21, 2018 (last updated November 26, 2024)
The Calendar component in Tiki 17.1 allows HTML injection.
0
Attacker Value
Unknown

CVE-2018-7188

Disclosure Date: February 16, 2018 (last updated November 26, 2024)
An XSS vulnerability (via an SVG image) in Tiki before 18 allows an authenticated user to gain administrator privileges if an administrator opens a wiki page with a malicious SVG image, related to lib/filegals/filegallib.php.
0
Attacker Value
Unknown

CVE-2016-7394

Disclosure Date: February 06, 2018 (last updated November 26, 2024)
tiki wiki cms groupware <=15.2 has a xss vulnerability, allow attackers steal user's cookie.
0
Attacker Value
Unknown

CVE-2017-16908

Disclosure Date: November 20, 2017 (last updated November 26, 2024)
In Horde Groupware 5.2.19, there is XSS via the Name field during creation of a new Resource. This can be leveraged for remote code execution after compromising an administrator account, because the CVE-2015-7984 CSRF protection mechanism can then be bypassed.
0
Attacker Value
Unknown

CVE-2017-16906

Disclosure Date: November 20, 2017 (last updated November 26, 2024)
In Horde Groupware 5.2.19-5.2.22, there is XSS via the URL field in a "Calendar -> New Event" action.
0