FreeBSD : horde-imp -- XSS vulnerability (6c4db192-cb23-11df-9c1b-0011098ad87f)

high Nessus Plugin ID 49728

Language:

Synopsis

The remote FreeBSD host is missing one or more security-related updates.

Description

The Horde team reports :

Thanks to Naumann IT Security Consulting for reporting the XSS vulnerability.

The major changes compared to IMP version H3 (4.3.7) are :

* Fixed an XSS vulnerability in the Fetchmail configuration.

Solution

Update the affected packages.

See Also

http://article.gmane.org/gmane.comp.horde.announce/516

http://www.nessus.org/u?a4c48bd6

http://www.nessus.org/u?4b59f9c9

Plugin Details

Severity: High

ID: 49728

File Name: freebsd_pkg_6c4db192cb2311df9c1b0011098ad87f.nasl

Version: 1.9

Type: local

Published: 10/6/2010

Updated: 1/6/2021

Supported Sensors: Nessus

Vulnerability Information

CPE: p-cpe:/a:freebsd:freebsd:horde-imp, cpe:/o:freebsd:freebsd

Required KB Items: Host/local_checks_enabled, Host/FreeBSD/release, Host/FreeBSD/pkg_info

Patch Publication Date: 9/28/2010

Vulnerability Publication Date: 9/28/2010