From 5b916628c0e055686eb0856e74bda5ebf3c6a00d Mon Sep 17 00:00:00 2001 From: Jacques Vidrine Date: Fri, 21 Jan 2005 14:53:14 +0000 Subject: Document a vulnerability in eGroupWare. --- security/vuxml/vuln.xml | 24 ++++++++++++++++++++++++ 1 file changed, 24 insertions(+) (limited to 'security') diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml index b86e5679536c..3cdd98f14f74 100644 --- a/security/vuxml/vuln.xml +++ b/security/vuxml/vuln.xml @@ -32,6 +32,30 @@ EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. --> + + egroupware -- arbitrary file download in JiNN + + + eGroupWare + 1.0.0.006 + + + + +

eGroupWare contains a bug in the JiNN component that allows + a remote attacker to download arbitrary files.

+ +
+ + http://cvs.sourceforge.net/viewcvs.py/egroupware/jinn/CHANGELOG#rev1.24 + http://sourceforge.net/mailarchive/forum.php?thread_id=5915445&forum_id=35178 + + + 2004-10-15 + 2005-01-21 + +
+ quake2 -- multiple critical vulnerabilities -- cgit v1.2.3