Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
horde vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2005-1322
Cross-site scripting (XSS) vulnerability in Horde Nag Task List Manager prior to 1.1.3 allows remote malicious users to inject arbitrary web script or HTML via the parent's frame page title.
Horde Nag 1.1.1
Horde Nag 1.1.2
3.5
CVSSv2
CVE-2017-16907
In Horde Groupware 5.2.19 and 5.2.21, there is XSS via the Color field in a Create Task List action.
Horde Groupware 5.2.21
Horde Groupware 5.2.19
5
CVSSv2
CVE-2000-0911
IMP 2.2 and previous versions allows malicious users to read and delete arbitrary files by modifying the attachment_name hidden form variable, which causes IMP to send the file to the attacker as an attachment.
Horde Imp 2.0
Horde Imp 2.2
5.1
CVSSv2
CVE-2007-0579
Unspecified vulnerability in the calendar component in Horde Groupware Webmail Edition prior to 1.0, and Groupware prior to 1.0, allows remote malicious users to include certain files via unspecified vectors. NOTE: some of these details are obtained from third party information.
Horde Groupware 1.0 Rc3
Horde Groupware 1.0 Rc2
4.3
CVSSv2
CVE-2008-5917
Cross-site scripting (XSS) vulnerability in the XSS filter (framework/Text_Filter/Filter/xss.php) in Horde Application Framework 3.2.2 and 3.3, when Internet Explorer is being used, allows remote malicious users to inject arbitrary web script or HTML via unknown vectors related t...
Horde Application Framework 3.3
Horde Application Framework 3.2.2
3.5
CVSSv2
CVE-2005-4191
Multiple cross-site scripting (XSS) vulnerabilities in templates/tasklists/tasklists.inc in Horde Nag Task List Manager H3 prior to 2.0.4 allow remote authenticated users to inject arbitrary web script or HTML via (1) the tasklist's name or (2) description, when creating a n...
Horde Nag Task List Manager H3 1.1.3
Horde Nag Task List Manager H3 2.0
Horde Nag Task List Manager H3 1.1.1
Horde Nag Task List Manager H3 1.1.2
Horde Nag Task List Manager H3 2.0.1
Horde Nag Task List Manager H3 2.0.2
Horde Nag Task List Manager H3 1.1
Horde Nag Task List Manager H3 2.0.3
4.3
CVSSv2
CVE-2016-2228
Cross-site scripting (XSS) vulnerability in horde/templates/topbar/_menubar.html.php in Horde Groupware prior to 5.2.12 and Horde Groupware Webmail Edition prior to 5.2.12 allows remote malicious users to inject arbitrary web script or HTML via the searchfield parameter, as demon...
Debian Debian Linux 8.0
Horde Groupware
Horde Horde Groupware
Fedoraproject Fedora 22
Fedoraproject Fedora 23
4.3
CVSSv2
CVE-2009-0930
Multiple cross-site scripting (XSS) vulnerabilities in Horde IMP prior to 4.2.2 and 4.3.3 allow remote malicious users to inject arbitrary web script or HTML via unspecified vectors to (1) smime.php, (2) pgp.php, and (3) message.php.
Debian Horde Imp
Debian Horde Imp 4.0
4.3
CVSSv2
CVE-2008-1974
Cross-site scripting (XSS) vulnerability in addevent.php in Horde Kronolith 2.1.7, Groupware Webmail Edition 1.0.6, and Groupware 1.0.5 allows remote malicious users to inject arbitrary web script or HTML via the url parameter.
Horde Groupware 1.0.5
Horde Groupware Webmail Edition 1.0.6
1 EDB exploit
4.3
CVSSv2
CVE-2008-4182
Cross-site scripting (XSS) vulnerability in imp/test.php in Horde Turba Contact Manager H3 2.2.1 and other versions prior to 2.3.1, and possibly other Horde Project products, allows remote malicious users to inject arbitrary web script or HTML via the User field in an IMAP sessio...
Horde Turba Contact Manager H3 3.1.1
Horde Turba Contact Manager H3 2.2.1
Horde Turba Contact Manager H3 3.2.2
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
NULL pointer dereference
CVE-2023-52689
CVE-2024-23803
client side
CVE-2023-52696
information disclosure
CVE-2024-35843
CVE-2024-27130
CVE-2023-52697
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
4
5
6
7
8
9
10
NEXT »