Vulnerabilities
Vulnerable Software
Debian:  >> Horde  >> 3.2  Security Vulnerabilities
Directory traversal vulnerability in framework/Image/Image.php in Horde before 3.2.4 and 3.3.3 and Horde Groupware before 1.1.5 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the Horde_Image driver name.
CVSS Score
6.4
EPSS Score
0.056
Published
2009-03-17
Cross-site scripting (XSS) vulnerability in services/obrowser/index.php in Horde 3.2 and Turba 2.2 allows remote attackers to inject arbitrary web script or HTML via the contact name.
CVSS Score
4.3
EPSS Score
0.005
Published
2008-07-27


Contact Us

Shodan ® - All rights reserved