Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Gunnar Wrobel

Pesquisador deHorde team
#42271de 53,638
6.4CVSS total
Vulnerabilidades · 1
PT-2009-3518
6.4
2009-03-17
Horde · Horde Groupware · CVE-2009-0932
**Name of the Vulnerable Software and Affected Versions** Horde versions prior to 3.2.4 Horde versions prior to 3.3.3 Horde Groupware versions prior to 1.1.5 **Description** The issue allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the Horde Image driver name. This is a directory traversal vulnerability in the framework/Image/Image.php file. **Recommendations** For Horde versions prior to 3.2.4, update to version 3.2.4 or later. For Horde versions prior to 3.3.3, update to version 3.3.3 or later. For Horde Groupware versions prior to 1.1.5, update to version 1.1.5 or later.