CVE-2016-6189

Incomplete blacklist in SOGo before 2.3.12 and 3.x before 3.1.1 allows remote authenticated users to obtain sensitive information by reading the fields in the (1) ics or (2) XML calendar feeds.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:alinto:sogo:*:*:*:*:*:*:*:*
cpe:2.3:a:alinto:sogo:*:*:*:*:*:*:*:*

Information

Published : 2017-02-17 09:59

Updated : 2022-12-20 08:52


NVD link : CVE-2016-6189

Mitre link : CVE-2016-6189


JSON object : View

CWE
CWE-184

Incomplete List of Disallowed Inputs

Advertisement

dedicated server usa

Products Affected

alinto

  • sogo