Horde / Application Framework
8 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2009-4363 | horde: XSS vulnerability via data: URIs | MEDIUM | 4.3 | Dec 21, 2009 |
| CVE-2009-3701 | horde: PHP_SELF XSS vulnerabilities | MEDIUM | 4.3 | Dec 21, 2009 |
| CVE-2009-3236 | Horde: Improper validation of image form fields (local files overwrite) | MEDIUM | 4.3 | Sep 17, 2009 |
| CVE-2008-5917 | horde: IE-specific XSS via image style attribute | MEDIUM | 4.3 | Jan 21, 2009 |
| CVE-2004-2741 | Cross-site scripting (XSS) vulnerability in the "help window" (help.php) in Horde Application Framework 2.2.6 allows remote attackers to inject arbitrary web s… | MEDIUM | 4.3 | Oct 9, 2007 |
| CVE-2006-4256 | index.php in Horde Application Framework before 3.1.2 allows remote attackers to include web pages from other sites, which could be useful for phishing attacks… | MEDIUM | 4.3 | Aug 21, 2006 |
| CVE-2006-1491 | Eval injection vulnerability in Horde Application Framework versions 3.0 before 3.0.10 and 3.1 before 3.1.1 allows remote attackers to execute arbitrary code v… | HIGH | 7.5 | Mar 29, 2006 |
| CVE-2005-0961 | Cross-site scripting (XSS) vulnerability in Horde 3.0.4 before 3.0.4-RC2 allows remote attackers to inject arbitrary web script or HTML via the parent frame ti… | MEDIUM | 4.3 | Apr 3, 2005 |
Showing 1 to 8 of 8 CVEs