CVE-2005-1314: XSS
Published Apr 27, 2005
·Updated
Cross-site scripting (XSS) vulnerability in Horde Kronolith module before 1.1.4 allows remote attackers to inject arbitrary web script or HTML via the parent's frame page title.
Affected Software
1 affected component
Horde Kronolith=1.1.3
Remediation
Patch Available
Event History
Apr 27, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-1314?
CVE-2005-1314 has a moderate severity rating, as it allows for cross-site scripting (XSS) attacks.
2
How do I fix CVE-2005-1314?
To fix CVE-2005-1314, upgrade the Horde Kronolith module to version 1.1.4 or later.
3
What software versions are affected by CVE-2005-1314?
CVE-2005-1314 affects Horde Kronolith version 1.1.3 and earlier.
4
What type of attack does CVE-2005-1314 enable?
CVE-2005-1314 enables attackers to execute arbitrary web scripts or HTML through cross-site scripting.
5
Who is impacted by CVE-2005-1314?
Remote attackers targeting users of affected versions of the Horde Kronolith module may exploit CVE-2005-1314.