Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple cross-site scripting (XSS) vulnerabilities in Horde Groupware Webmail 1.0 allow remote authenticated users to inject arbitrary web script or HTML via unspecified vectors in (1) imp/search.php and (2) ingo/rule.php. NOTE: this issue has been disputed by the vendor, noting that the search.php issue was resolved in CVE-2006-4255, and attackers can only use rule.php to inject XSS into their own pages
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Horde Groupware Webmail 多个跨站脚本攻击漏洞
Vulnerability Description
**有争议的**Horde Groupware Webmail 1.0版本中存在多个跨站脚本攻击漏洞。远程认证用户可以借助(1)imp/search.php和(2)ingo/rule.php文件中的未明向量,注入任意的web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A