Cross-site scripting (XSS) vulnerability in Horde Dynamic IMP (DIMP) before 1.1.5, and Horde Groupware Webmail Edition before 1.2.7, allows remote attackers to inject arbitrary web script or HTML via vectors related to displaying mailbox names.
                
            References
                    Configurations
                    Configuration 1 (hide)
            
            
  | 
    
Configuration 2 (hide)
            
            
  | 
    
History
                    No history.
Information
                Published : 2011-04-04 12:27
Updated : 2019-06-18 16:44
NVD link : CVE-2010-3693
Mitre link : CVE-2010-3693
CVE.ORG link : CVE-2010-3693
JSON object : View
Products Affected
                horde
- groupware
 - dynamic_imp
 
CWE
                
                    
                        
                        CWE-79
                        
            Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
