Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
index.php in Horde Application Framework before 3.1.2 allows remote attackers to include web pages from other sites, which could be useful for phishing attacks, via a URL in the url parameter, aka "cross-site referencing." NOTE: some sources have referred to this issue as XSS, but it is different than classic XSS.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Horde Application Framework 'index.php'跨站引用漏洞
Vulnerability Description
Horde Application Framework 3.1.2之前版本的index.php脚本允许远程攻击者借助url参数中的URL包含来自其它网站的网页,此漏洞可被钓鱼攻击所利用, 也称"跨站引用"。注意:一些资料将此问题称为XSS(跨站脚本攻击),但它不同于跨站脚本类攻击。
CVSS Information
N/A
Vulnerability Type
N/A