← Back to CVE List

CVE-2022-26874

Published: 2022-03-11T07:15Z
Last Modified: 2024-11-21T06:54Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
lib/Horde/Mime/Viewer/Ooo.php in Horde Mime_Viewer before 2.2.4 allows XSS via an OpenOffice document, leading to account takeover in Horde Groupware Webmail Edition. This occurs after XSLT rendering. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt