Unrated severityNVD Advisory· Published Dec 13, 2005· Updated Jun 16, 2026
CVE-2005-4192
CVE-2005-4192
Description
Multiple cross-site scripting (XSS) vulnerabilities in templates/notepads/notepads.inc in Horde Mnemo Note Manager H3 before 2.0.3 allow remote authenticated users to inject arbitrary web script or HTML via (1) the notepad's name or (2) description, when creating a new notepad.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2<2.0.3+ 1 more
- (no CPE)range: <2.0.3
- (no CPE)range: <2.0.3
Patches
Vulnerability mechanics
References
6- cvs.horde.org/diff.php/mnemo/templates/notepads/notepads.incnvdPatch
- lists.horde.org/archives/announce/2005/000237.htmlnvdPatch
- secunia.com/advisories/17964nvdPatchVendor Advisory
- www.securityfocus.com/bid/15803nvdPatch
- www.sec-consult.com/245.htmlnvdExploitVendor Advisory
- www.vupen.com/english/advisories/2005/2833nvd
News mentions
0No linked articles in our index yet.