Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in util/icon_browser.php in the Horde Application Framework before 3.3.9 allows remote attackers to inject arbitrary web script or HTML via the subdir parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Horde Application Framework util/icon_browser.php文件跨站脚本攻击漏洞
Vulnerability Description
Horde Application Framework是美国Horde公司的一套用在PHP中的通用Web应用程序框架。该框架主要用于开发Web应用程序。 Horde Application Framework 3.3.9之前版本中的util/icon_browser.php文件中存在跨站脚本攻击漏洞。远程攻击者可以借助subdir参数注入任意web脚本或者HTML。
CVSS Information
N/A
Vulnerability Type
N/A