Cross-site scripting (XSS) vulnerability in passwd/main.php in the Passwd module before 3.1.1 for Horde allows remote attackers to inject arbitrary web script or HTML via the backend parameter.
- http://bugs.horde.org/ticket/8398
No PoCs found on GitHub currently.