vendor:
Horde Groupware Webmail Edition
by:
Marcela Benetrix
5.3
CVSS
MEDIUM
CSRF
Unknown
CWE
Product Name: Horde Groupware Webmail Edition
Affected Version From: 5.1.2002
Affected Version To: Unknown
Patch Exists: YES
Related CWE: CVE-2013-6365
CPE: horde-groupware-webmail-edition
Platforms Tested:
2013
CSRF Horde Groupware Web mail Edition
Change of permissions functionality was found to miss unique token in the form.
Mitigation:
Unknown