Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-5303

Опубликовано: 20 дек. 2016
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.3
CVSS3: 6.1

Описание

Cross-site scripting (XSS) vulnerability in the Horde Text Filter API in Horde Groupware and Horde Groupware Webmail Edition before 5.2.16 allows remote attackers to inject arbitrary web script or HTML via crafted data:text/html content in a form (1) action or (2) xlink attribute.

РелизСтатусПримечание
artful

not-affected

bionic

not-affected

cosmic

not-affected

devel

DNE

disco

not-affected

eoan

not-affected

esm-apps/bionic

not-affected

esm-apps/xenial

needed

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was needed]
esm-infra/focal

DNE

Показывать по

EPSS

Процентиль: 57%
0.00355
Низкий

4.3 Medium

CVSS2

6.1 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.1
nvd
около 9 лет назад

Cross-site scripting (XSS) vulnerability in the Horde Text Filter API in Horde Groupware and Horde Groupware Webmail Edition before 5.2.16 allows remote attackers to inject arbitrary web script or HTML via crafted data:text/html content in a form (1) action or (2) xlink attribute.

CVSS3: 6.1
debian
около 9 лет назад

Cross-site scripting (XSS) vulnerability in the Horde Text Filter API ...

CVSS3: 6.1
github
больше 3 лет назад

Cross-site scripting (XSS) vulnerability in the Horde Text Filter API in Horde Groupware and Horde Groupware Webmail Edition before 5.2.16 allows remote attackers to inject arbitrary web script or HTML via crafted data:text/html content in a form (1) action or (2) xlink attribute.

EPSS

Процентиль: 57%
0.00355
Низкий

4.3 Medium

CVSS2

6.1 Medium

CVSS3