Unrated severityNVD Advisory· Published Apr 22, 2002· Updated Apr 16, 2026
CVE-2002-0181
CVE-2002-0181
Description
Cross-site scripting vulnerability in status.php3 for IMP 2.2.8 and HORDE 1.2.7 allows remote attackers to execute arbitrary web script and steal cookies of other IMP/HORDE users via the script parameter.
Affected products
2- cpe:2.3:a:horde:horde:1.2.7:*:*:*:*:*:*:*
- cpe:2.3:a:horde:imp:2.2.8:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- www.debian.org/security/2002/dsa-126nvdPatchVendor Advisory
- bugs.horde.org/show_bug.cginvd
- distro.conectiva.com.br/atualizacoes/nvd
- marc.infonvd
- www.calderasystems.com/support/security/advisories/CSSA-2002-016.1.txtnvd
- www.iss.net/security_center/static/8769.phpnvd
- www.osvdb.org/5345nvd
- www.securityfocus.com/bid/4444nvd
News mentions
0No linked articles in our index yet.