10
CVSSv2

CVE-2005-3344

Published: 16/11/2005 Updated: 11/07/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The default installation of Horde 3.0.4 contains an administrative account with a blank password, which allows remote malicious users to gain access.

Vulnerable Product Search on Vulmon Subscribe to Product

horde horde 3.0.4

Vendor Advisories

Mike O'Connor discovered that the default installation of Horde3 on Debian includes an administrator account without a password Already configured installations will not be altered by this update The old stable distribution (woody) does not contain horde3 packages For the stable distribution (sarge) this problem has been fixed in version 304-4 ...