First published: Tue Mar 17 2009(Updated: )
Directory traversal vulnerability in framework/Image/Image.php in Horde before 3.2.4 and 3.3.3 and Horde Groupware before 1.1.5 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the Horde_Image driver name.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Debian Horde | =3.3.2 | |
Debian Horde | =3.2 | |
Debian Horde Groupware | =1.1.3 | |
Debian Horde | =3.2.2 | |
Debian Horde Groupware | =1.1.1 | |
Debian Horde | =3.3.1 | |
Debian Horde | =3.2.3 | |
Debian Horde | =3.3 | |
Debian Horde Groupware | =1.1.2 | |
Debian Horde Groupware | =1.1.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.