Loading...
Loading...
Cross-site scripting (XSS) vulnerability in login.php in phpGroupWare 0.9.16.12, and possibly other versions before 0.9.16.014, allows remote attackers to inject arbitrary web script or HTML via an arbitrary parameter whose name begins with the "phpgw_" sequence.
December 24, 2009
April 23, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2009-4416
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.