Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rxqm-q9j8-vc9v

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

index.php in Horde Application Framework before 3.1.2 allows remote attackers to include web pages from other sites, which could be useful for phishing attacks, via a URL in the url parameter, aka "cross-site referencing." NOTE: some sources have referred to this issue as XSS, but it is different than classic XSS.

index.php in Horde Application Framework before 3.1.2 allows remote attackers to include web pages from other sites, which could be useful for phishing attacks, via a URL in the url parameter, aka "cross-site referencing." NOTE: some sources have referred to this issue as XSS, but it is different than classic XSS.

EPSS

Процентиль: 73%
0.00791
Низкий

Связанные уязвимости

ubuntu
около 19 лет назад

index.php in Horde Application Framework before 3.1.2 allows remote attackers to include web pages from other sites, which could be useful for phishing attacks, via a URL in the url parameter, aka "cross-site referencing." NOTE: some sources have referred to this issue as XSS, but it is different than classic XSS.

nvd
около 19 лет назад

index.php in Horde Application Framework before 3.1.2 allows remote attackers to include web pages from other sites, which could be useful for phishing attacks, via a URL in the url parameter, aka "cross-site referencing." NOTE: some sources have referred to this issue as XSS, but it is different than classic XSS.

debian
около 19 лет назад

index.php in Horde Application Framework before 3.1.2 allows remote at ...

EPSS

Процентиль: 73%
0.00791
Низкий