CVE-2016-5303 | IMP Horde Groupware/Horde Groupware Webmail Edition up to 5.2.15 data:text/html action/xlink HTML injection (Nessus ID 255096 / BID-94997)
A vulnerability was found in IMP Horde Groupware and Horde Groupware Webmail Edition up to 5.2.15 and classified as problematic. Impacted is an unknown function of the component data:text/html Handler. Such manipulation of the argument action/xlink leads to HTML injection.
This vulnerability is documented as CVE-2016-5303. The attack can be executed remotely. There is not any exploit available.
It is suggested to upgrade the affected component.