CVE-2005-1316: XSS
Published Apr 27, 2005
·Updated
Cross-site scripting (XSS) vulnerability in Horde Accounts module before 2.1.2 allows remote attackers to inject arbitrary web script or HTML via the parent's frame page title.
Affected Software
2 affected components
Horde Accounts=2.1
Horde Accounts=2.1.1
Remediation
Patch Available
Event History
Apr 27, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-1316?
CVE-2005-1316 is classified as a moderate severity XSS vulnerability.
2
How do I fix CVE-2005-1316?
To fix CVE-2005-1316, you should upgrade to Horde Accounts version 2.1.2 or later.
3
What is the impact of exploiting CVE-2005-1316?
Exploiting CVE-2005-1316 allows attackers to inject arbitrary web scripts or HTML into the application.
4
Which versions of Horde Accounts are affected by CVE-2005-1316?
CVE-2005-1316 affects Horde Accounts versions before 2.1.2, including 2.1 and 2.1.1.
5
Is CVE-2005-1316 a cross-site scripting vulnerability?
Yes, CVE-2005-1316 is a cross-site scripting (XSS) vulnerability.