Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Gunnar Wrobel

Researcher fromHorde team
#42153of 53,635
6.4Total CVSS
Vulnerabilities · 1
PT-2009-3518
6.4
2009-03-17
Horde · Horde Groupware · CVE-2009-0932
**Name of the Vulnerable Software and Affected Versions** Horde versions prior to 3.2.4 Horde versions prior to 3.3.3 Horde Groupware versions prior to 1.1.5 **Description** The issue allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the Horde Image driver name. This is a directory traversal vulnerability in the framework/Image/Image.php file. **Recommendations** For Horde versions prior to 3.2.4, update to version 3.2.4 or later. For Horde versions prior to 3.3.3, update to version 3.3.3 or later. For Horde Groupware versions prior to 1.1.5, update to version 1.1.5 or later.