Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
horde horde 2.1.3 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2006-6175
Directory traversal vulnerability in lib/FBView.php in Horde Kronolith H3 prior to 2.0.7 and 2.1.x prior to 2.1.4 allows remote malicious users to include arbitrary files and execute PHP code via a .. (dot dot) sequence in the view parameter.
Horde Kronolith 2.0.5
Horde Kronolith 2.0.4
Horde Kronolith 2.1.3
Horde Kronolith 2.0.3
Horde Kronolith 2.1.2
Horde Kronolith 2.0.1
Horde Kronolith 2.1
Horde Kronolith 2.0.6
Horde Kronolith 2.1.1
Horde Kronolith 2.0.2
NA
CVE-2008-7218
Unspecified vulnerability in the Horde API in Horde 3.1 prior to 3.1.6 and 3.2 prior to 3.2 prior to 3.2-RC2; Turba H3 2.1 prior to 2.1.6 and 2.2 prior to 2.2-RC2; Kronolith H3 2.1 prior to 2.1.7 and H3 2.2 prior to 2.2-RC2; Nag H3 2.1 prior to 2.1.4 and 2.2 prior to 2.2-RC2; Mne...
Horde Nag H3 2.1.3
Horde Horde 3.2
Horde Groupware 1.1
Horde Horde 3.1.4
Horde Groupware Webmail Edition 1.1
Horde Nag H3 2.1.2
Horde Groupware 1.0
Horde Turba H3 2.2
Horde Nag H3 2.1.1
Horde Turba H3 2.1.1
Horde Nag H3 2.2
Horde Turba H3 2.1.4
Horde Horde 3.1.5
Horde Turba H3 2.1.5
Horde Kronolith H3 2.1.5
Horde Groupware 1.0.2
Horde Groupware Webmail Edition 1.0.3
Horde Mnemo H3 2.1.1
Horde Mnemo H3 2.1
Horde Kronolith H3 2.1.2
Horde Kronolith H3 2.1.4
Horde Groupware 1.0.1
NA
CVE-2006-1260
Horde Application Framework 3.0.9 allows remote malicious users to read arbitrary files via a null character in the url parameter in services/go.php, which bypasses a sanity check.
Horde Horde 2.2.7
Horde Horde 3.0.6
Horde Horde 1.2.8
Horde Horde 2.2.3
Horde Horde 1.2
Horde Horde 1.2.1
Horde Horde 2.2.1
Horde Horde 1.2.6
Horde Horde 3.0
Horde Horde 2.2.4
Horde Horde 3.0.3
Horde Horde 2.0
Horde Horde 3.0.4
Horde Horde 1.2.5
Horde Horde 3.0.1
Horde Horde 3.0.4 Rc2
Horde Horde 1.2.3
Horde Horde 2.2.9
Horde Horde 1.2.2
Horde Horde 2.2.8
Horde Horde 3.0.8
Horde Horde 3.0.9
1 EDB exploit
NA
CVE-2005-3759
Multiple cross-site scripting (XSS) vulnerabilities in Horde prior to 3.0.7 allow remote malicious users to inject arbitrary web script or HTML via the (1) gzip/tar and (2) css MIME viewers, which do not filter or escape dangerous HTML when extracting and displaying attachments.
Horde Horde 2.2.7
Horde Horde 3.0.6
Horde Horde 1.2.8
Horde Horde 2.2.3
Horde Horde 1.2
Horde Horde 1.2.1
Horde Horde 2.2.1
Horde Horde 1.2.6
Horde Horde 3.0
Horde Horde 2.2.4
Horde Horde 3.0.3
Horde Horde 2.0
Horde Horde 3.0.4
Horde Horde 1.2.5
Horde Horde 3.0.1
Horde Horde 3.0.4 Rc2
Horde Horde 1.2.3
Horde Horde 2.2.9
Horde Horde 1.2.2
Horde Horde 2.2.8
Horde Horde 3.0.2
Horde Horde 3.0.4 Rc1
NA
CVE-2008-7219
Horde Kronolith H3 2.1 prior to 2.1.7 and 2.2 prior to 2.2-RC2; Nag H3 2.1 prior to 2.1.4 and 2.2 prior to 2.2-RC2; Mnemo H3 2.1 prior to 2.1.2 and H3 2.2 prior to 2.2-RC2; Groupware 1.0 prior to 1.0.3 and 1.1 prior to 1.1-RC2; and Groupware Webmail Edition 1.0 prior to 1.0.4 and...
Horde Nag H3 2.1.3
Horde Groupware 1.1
Horde Groupware Webmail Edition 1.1
Horde Nag H3 2.1.2
Horde Groupware 1.0
Horde Nag H3 2.1.1
Horde Nag H3 2.2
Horde Kronolith H3 2.1.5
Horde Groupware 1.0.2
Horde Groupware Webmail Edition 1.0.3
Horde Mnemo H3 2.1.1
Horde Mnemo H3 2.1
Horde Kronolith H3 2.1.2
Horde Kronolith H3 2.1.4
Horde Groupware 1.0.1
Horde Groupware Webmail Edition 1.0
Horde Nag H3 2.1
Horde Groupware Webmail Edition 1.0.2
Horde Kronolith H3 2.1.3
Horde Mnemo H3 2.2
Horde Kronolith H3 2.1.1
Horde Kronolith H3 2.1
NA
CVE-2004-2741
Cross-site scripting (XSS) vulnerability in the "help window" (help.php) in Horde Application Framework 2.2.6 allows remote malicious users to inject arbitrary web script or HTML via the (1) module, (2) topic, or (3) module parameters.
Horde Application Framework 2.1
Horde Application Framework 2.2.4 Rc1
Horde Application Framework 2.0
Horde Application Framework 2.2
Horde Application Framework 2.2.3
Horde Application Framework 2.2.1
Horde Application Framework 2.2.6
Horde Application Framework 2.1.3
Horde Application Framework 2.2.5
Horde Application Framework 2.2.4
NA
CVE-2008-6746
Cross-site scripting (XSS) vulnerability in the contact display view in Turba Contact Manager H3 prior to 2.2.1 allows remote malicious users to inject arbitrary web script or HTML via the contact name.
Horde Turba H3 0.0.2
Horde Turba H3 2.0
Horde Turba H3 2.0.2
Horde Turba H3 2.2
Horde Turba H3 1.2.5
Horde Turba H3 2.0.1
Horde Turba H3 1.2.2
Horde Turba H3 2.1.1
Horde Turba H3 2.1.4
Horde Turba H3 0.0.1
Horde Turba H3 2.1
Horde Turba H3 2.1.5
Horde Turba H3 1.1
Horde Turba H3 1.2
Horde Turba H3 2.0.5
Horde Turba H3 2.1.6
Horde Turba H3 1.0
Horde Turba H3 2.1.7
Horde Turba H3 2.1.2
Horde Turba H3 1.2.4
Horde Turba H3 1.2.3
Horde Turba H3
NA
CVE-2009-4363
Text_Filter/lib/Horde/Text/Filter/Xss.php in Horde Application Framework prior to 3.3.6, Horde Groupware prior to 1.2.5, and Horde Groupware Webmail Edition prior to 1.2.5 does not properly handle data: URIs, which allows remote malicious users to conduct cross-site scripting (XS...
Horde Application Framework 3.0.2
Horde Groupware 1.1
Horde Application Framework 3.2.4
Horde Application Framework 2.1
Horde Groupware 1.0
Horde Groupware 1.2.2
Horde Application Framework 2.2.4 Rc1
Horde Groupware 1.1.5
Horde Application Framework 3.2.1
Horde Application Framework
Horde Application Framework 2.0
Horde Application Framework 3.3.2
Horde Application Framework 3.0.8
Horde Groupware 1.2.1
Horde Application Framework 3.0
Horde Groupware 1.0.2
Horde Application Framework 3.2.2
Horde Groupware
Horde Groupware 1.0.1
Horde Groupware 1.0.5
Horde Application Framework 2.2
Horde Groupware 1.1.1
NA
CVE-2009-3701
Multiple cross-site scripting (XSS) vulnerabilities in the administration interface in Horde Application Framework prior to 3.3.6, Horde Groupware prior to 1.2.5, and Horde Groupware Webmail Edition prior to 1.2.5 allow remote malicious users to inject arbitrary web script or HTM...
Horde Application Framework 3.0.2
Horde Groupware 1.1
Horde Application Framework 3.2.4
Horde Application Framework 2.1
Horde Groupware 1.0
Horde Groupware 1.2.2
Horde Application Framework 2.2.4 Rc1
Horde Groupware 1.1.5
Horde Application Framework 3.2.1
Horde Application Framework
Horde Application Framework 2.0
Horde Application Framework 3.3.2
Horde Application Framework 3.0.8
Horde Groupware 1.2.1
Horde Application Framework 3.0
Horde Groupware 1.0.2
Horde Application Framework 3.2.2
Horde Groupware
Horde Groupware 1.0.1
Horde Groupware 1.0.5
Horde Application Framework 2.2
Horde Groupware 1.1.1
4 EDB exploits
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-30078
CVE-2024-37896
code injection
CVE-2024-3080
CVE-2024-5172
cross-site request forgery
CVE-2024-6111
firmware
CVE-2024-38504
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started