VYPR

kdepim

by KDE

CVEs (2)

  • CVE-2012-3413Aug 7, 2012
    risk 0.00cvss —epss 0.02

    The HTMLQuoteColorer::process function in messageviewer/htmlquotecolorer.cpp in KDE PIM 4.6 through 4.8 does not disable JavaScript, Java, and Plugins, which allows remote attackers to inject arbitrary web script or HTML via a crafted email.

  • CVE-2003-0988Feb 17, 2004
    risk 0.00cvss —epss 0.06

    Buffer overflow in the VCF file information reader for KDE Personal Information Management (kdepim) suite in KDE 3.1.0 through 3.1.4 allows attackers to execute arbitrary code via a VCF file.