CVE-2004-0584 Information

Description

Unknown vulnerability in Horde IMP 3.2.3 and earlier before a \security fix\ does not properly validate input which allows remote attackers to execute arbitrary script as other users via script or HTML in an e-mail message possibly triggering a cross-site scripting (XSS) vulnerability.

Reference

http://secunia.com/advisories/11805 http://www.gentoo.org/security/en/glsa/glsa-200406-11.xml http://www.horde.org/imp/3.2/ http://www.securityfocus.com/bid/10501 https://exchange.xforce.ibmcloud.com/vulnerabilities/16357

Share on: