Total vulnerabilities in the database
Cross-site scripting (XSS) vulnerability in services/obrowser/index.php in Horde 3.2 and Turba 2.2 allows remote attackers to inject arbitrary web script or HTML via the contact name.
Software | From | Fixed in |
---|---|---|
debian / turba | 2.2 | 2.2.x |
debian / horde | 3.2 | 3.2.x |