[Tickets #14165] XSS vuln in login - Qualys Report

noreply at bugs.horde.org noreply at bugs.horde.org
Wed Nov 18 16:09:22 UTC 2015


DO NOT REPLY TO THIS MESSAGE. THIS EMAIL ADDRESS IS NOT MONITORED.

Ticket URL: https://bugs.horde.org/ticket/14165
------------------------------------------------------------------------------
  Ticket             | 14165
  Created By         | martin.toth at swan.sk
  Summary            | XSS vuln in login - Qualys Report
  Queue              | Horde Groupware Webmail Edition
  Version            | 5.2.11
  Type               | Bug
  State              | Unconfirmed
  Priority           | 3. High
  Milestone          |
  Patch              |
  Owners             |
------------------------------------------------------------------------------


martin.toth at swan.sk (2015-11-18 16:09) wrote:

Hi Horde,
we recently run our Qualys Vulnerabilities Scan, it throws an XSS  
vuln. in Horde login page. Can someone confirm it's false positive or  
is it a real issue in final/stable branch of Horde Groupware webmail?

Regards,



martin.toth at swan.sk (2015-11-18 16:09) uploaded: XSS.png

https://bugs.horde.org/h/services/download/?app=whups&actionID=download_file&file=XSS.png&ticket=14165&fn=%2FXSS.png





More information about the bugs mailing list