Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
horde horde application framework 3.1.3 vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2008-3824
Cross-site scripting (XSS) vulnerability in (1) Text_Filter/Filter/xss.php in Horde 3.1.x prior to 3.1.9 and 3.2.x prior to 3.2.2 and (2) externalinput.php in Popoon r22196 and previous versions allows remote malicious users to inject arbitrary web script or HTML by using / (slas...
Horde Horde 3.2
Horde Horde 3.1.6
Horde Horde 3.1.8
Popoon Popoon
Horde Horde 3.2.1
Horde Horde 3.1.2
Horde Horde 3.1.1
Horde Horde 3.1.7
Horde Horde 3.1.5
Horde Horde 3.1.4
Horde Horde 3.1.3
1 EDB exploit
5.8
CVSSv2
CVE-2007-6018
IMP Webmail Client 4.1.5, Horde Application Framework 3.1.5, and Horde Groupware Webmail Edition 1.0.3 does not validate unspecified HTTP requests, which allows remote malicious users to (1) delete arbitrary e-mail messages via a modified numeric ID or (2) "purge" delet...
Horde Framework 3.1.5
Horde Imp 4.1.5
Horde Groupware Webmail Edition 1.0.3
Horde Horde 3.1.5
4.3
CVSSv2
CVE-2006-3548
Multiple cross-site scripting (XSS) vulnerabilities in Horde Application Framework 3.0.0 up to and including 3.0.10 and 3.1.0 up to and including 3.1.1 allow remote malicious users to inject arbitrary web script or HTML via a (1) javascript URI or an external (2) http, (3) https,...
Horde Horde 3.0.2
Horde Horde 3.0.3
Horde Horde 3.0.9
Horde Horde 3.1
Horde Horde 3.0.4
Horde Horde 3.0.4 Rc1
Horde Horde 3.1.1
Horde Horde 3.0.4 Rc2
Horde Horde 3.0.6
Horde Horde 3.0
Horde Horde 3.0.1
Horde Horde 3.0.7
Horde Horde 3.0.8
6
CVSSv2
CVE-2008-1284
Directory traversal vulnerability in Horde 3.1.6, Groupware prior to 1.0.5, and Groupware Webmail Edition prior to 1.0.6, when running with certain configurations, allows remote authenticated users to read and execute arbitrary files via ".." sequences and a null byte i...
Horde Groupware Webmail Edition
Horde Horde 3.1.6
Horde Groupware
6.4
CVSSv2
CVE-2009-0932
Directory traversal vulnerability in framework/Image/Image.php in Horde prior to 3.2.4 and 3.3.3 and Horde Groupware prior to 1.1.5 allows remote malicious users to include and execute arbitrary local files via directory traversal sequences in the Horde_Image driver name.
Debian Horde 3.2.2
Debian Horde 3.3
Debian Horde Groupware 1.1.1
Debian Horde Groupware 1.1.2
Debian Horde 3.2
Debian Horde 3.2.3
Debian Horde Groupware 1.1.3
Debian Horde Groupware 1.1.4
Debian Horde 3.3.1
Debian Horde 3.3.2
1 EDB exploit
2 Github repositories
4.3
CVSSv2
CVE-2008-5917
Cross-site scripting (XSS) vulnerability in the XSS filter (framework/Text_Filter/Filter/xss.php) in Horde Application Framework 3.2.2 and 3.3, when Internet Explorer is being used, allows remote malicious users to inject arbitrary web script or HTML via unknown vectors related t...
Horde Application Framework 3.3
Horde Application Framework 3.2.2
4.3
CVSSv2
CVE-2008-3330
Cross-site scripting (XSS) vulnerability in services/obrowser/index.php in Horde 3.2 and Turba 2.2 allows remote malicious users to inject arbitrary web script or HTML via the contact name.
Debian Horde 3.2
Debian Turba 2.2
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-29895
blind SQL injection
CVE-2024-5064
CVE-2023-52677
CVE-2023-52682
CVE-2024-30051
CVE-2024-35849
remote attackers
remote
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2