Unrated severityNVD Advisory· Published May 2, 2005· Updated Apr 16, 2026
CVE-2005-1319
CVE-2005-1319
Description
Cross-site scripting (XSS) vulnerability in Horde IMP Webmail client before 3.2.8 allows remote attackers to inject arbitrary web script or HTML via the parent's frame page title.
Affected products
7cpe:2.3:a:horde:imp:*:*:*:*:*:*:*:*+ 6 more
- cpe:2.3:a:horde:imp:*:*:*:*:*:*:*:*range: <=3.2.2
- cpe:2.3:a:horde:imp:3.2.3:*:*:*:*:*:*:*
- cpe:2.3:a:horde:imp:3.2.4:*:*:*:*:*:*:*
- cpe:2.3:a:horde:imp:3.2.5:*:*:*:*:*:*:*
- cpe:2.3:a:horde:imp:3.2.6:*:*:*:*:*:*:*
- cpe:2.3:a:horde:imp:3.2.7:*:*:*:*:*:*:*
- cpe:2.3:a:horde:imp:3.2.7_rc1:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.