FreeBSD : horde-gollem -- XSS vulnerability (e08c596e-cb28-11df-9c1b-0011098ad87f)

high Nessus Plugin ID 49731

Language:

Synopsis

The remote FreeBSD host is missing a security-related update.

Description

The Horde team reports :

The major changes compared to Gollem version H3 (1.1.1) are :

* Fixed an XSS vulnerability in the file viewer.

Solution

Update the affected package.

See Also

http://article.gmane.org/gmane.comp.horde.announce/523

http://www.nessus.org/u?bc1a147a

https://bugs.horde.org/ticket/9191

http://www.nessus.org/u?a2827ad6

Plugin Details

Severity: High

ID: 49731

File Name: freebsd_pkg_e08c596ecb2811df9c1b0011098ad87f.nasl

Version: 1.10

Type: local

Published: 10/6/2010

Updated: 1/6/2021

Supported Sensors: Nessus

Vulnerability Information

CPE: p-cpe:/a:freebsd:freebsd:horde-gollem, cpe:/o:freebsd:freebsd

Required KB Items: Host/local_checks_enabled, Host/FreeBSD/release, Host/FreeBSD/pkg_info

Patch Publication Date: 9/28/2010

Vulnerability Publication Date: 8/21/2010