{
    "CVE_data_meta": {
        "ASSIGNER": "secalert@redhat.com",
        "ID": "CVE-2010-3447",
        "STATE": "PUBLIC"
    },
    "affects": {
        "vendor": {
            "vendor_data": [
                {
                    "product": {
                        "product_data": [
                            {
                                "product_name": "n/a",
                                "version": {
                                    "version_data": [
                                        {
                                            "version_value": "n/a"
                                        }
                                    ]
                                }
                            }
                        ]
                    },
                    "vendor_name": "n/a"
                }
            ]
        }
    },
    "data_format": "MITRE",
    "data_type": "CVE",
    "data_version": "4.0",
    "description": {
        "description_data": [
            {
                "lang": "eng",
                "value": "Cross-site scripting (XSS) vulnerability in view.php in the file viewer in Horde Gollem before 1.1.2 allows remote attackers to inject arbitrary web script or HTML via the file parameter in a view_file action."
            }
        ]
    },
    "problemtype": {
        "problemtype_data": [
            {
                "description": [
                    {
                        "lang": "eng",
                        "value": "n/a"
                    }
                ]
            }
        ]
    },
    "references": {
        "reference_data": [
            {
                "name": "http://git.horde.org/diff.php/gollem/view.php?rt=horde&r1=1.51.2.6&r2=1.51.2.7&ty=u",
                "refsource": "CONFIRM",
                "url": "http://git.horde.org/diff.php/gollem/view.php?rt=horde&r1=1.51.2.6&r2=1.51.2.7&ty=u"
            },
            {
                "name": "ADV-2010-2523",
                "refsource": "VUPEN",
                "url": "http://www.vupen.com/english/advisories/2010/2523"
            },
            {
                "name": "gollem-view-xss(62091)",
                "refsource": "XF",
                "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/62091"
            },
            {
                "name": "68262",
                "refsource": "OSVDB",
                "url": "http://www.osvdb.org/68262"
            },
            {
                "name": "41624",
                "refsource": "SECUNIA",
                "url": "http://secunia.com/advisories/41624"
            },
            {
                "name": "[announce] 20100928 Gollem H3 (1.1.2) (final)",
                "refsource": "MLIST",
                "url": "http://lists.horde.org/archives/announce/2010/000565.html"
            },
            {
                "name": "[oss-security] 20100929 CVE request: Horde Gollem <1.1.2 XSS in view.php",
                "refsource": "MLIST",
                "url": "http://openwall.com/lists/oss-security/2010/09/29/11"
            },
            {
                "name": "http://bugs.horde.org/ticket/9191",
                "refsource": "CONFIRM",
                "url": "http://bugs.horde.org/ticket/9191"
            },
            {
                "name": "[oss-security] 20100930 Re: CVE request: Horde Gollem <1.1.2 XSS in view.php",
                "refsource": "MLIST",
                "url": "http://openwall.com/lists/oss-security/2010/09/30/5"
            },
            {
                "name": "http://git.horde.org/diff.php/gollem/view.php?rt=horde-git&r1=7f7a4300f16b429ed645bc3e2af2cedffc70ce3e&r2=025a1bfbe69622036f8e3a27a6edd39c02dcd4ea",
                "refsource": "CONFIRM",
                "url": "http://git.horde.org/diff.php/gollem/view.php?rt=horde-git&r1=7f7a4300f16b429ed645bc3e2af2cedffc70ce3e&r2=025a1bfbe69622036f8e3a27a6edd39c02dcd4ea"
            },
            {
                "name": "[commits] 20100824 Horde branch master updated. 025a1bfbe69622036f8e3a27a6edd39c02dcd4ea",
                "refsource": "MLIST",
                "url": "http://lists.horde.org/archives/commits/2010-August/004747.html"
            },
            {
                "name": "[oss-security] 20100930 Re: CVE request: Horde Gollem <1.1.2 XSS in view.php",
                "refsource": "MLIST",
                "url": "http://openwall.com/lists/oss-security/2010/09/30/8"
            },
            {
                "name": "[oss-security] 20100930 Re: CVE request: Horde Gollem <1.1.2 XSS in view.php",
                "refsource": "MLIST",
                "url": "http://openwall.com/lists/oss-security/2010/09/30/7"
            }
        ]
    }
}