Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2533▼ 405 respecto a la semana anterior
Críticas / altas1319▲ 38 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)99▼ 428 respecto a la semana anterior
–

126 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AplazadaMedia (5.1)0.41%—Horde IMPAI24/8/202624/9/2026
Horde IMP's AppleDouble MIME viewer writes an attacker-controlled attachment name into an HTML status block without escaping it. In lib/Mime/Viewer/Appledouble.php, _IMPrender() obtains the name of the data part with IMP_Contents::getPartName(), which returns the MIME part's own name parameter as supplied by the…
AplazadaAlta (7.7)3.3%—Horde Virtual File SystemAI8/7/202614/7/2026
Horde Virtual File System (VFS) API before 3.0.1 contains an OS command injection vulnerability in the Horde_Vfs_Smb driver where the _escapeShellCommand() method fails to sanitize command substitution sequences, allowing authenticated attackers to inject arbitrary shell commands through user-controlled filenames.…
AplazadaAlta (7.1)0.56%—Horde IMPAI1/7/202614/7/2026
Horde IMP before 7.0.1 contains a path traversal vulnerability in lib/Compose.php that allows authenticated attackers to read arbitrary files from the server filesystem by embedding traversal sequences after a CKEditor path prefix in img src URLs. Attackers can bypass the stripos() prefix validation by appending…
AnalizadaMedia (6.9)0.24%—Horde Groupware2/12/202517/6/2026
Horde Groupware v5.2.22 has a user enumeration vulnerability that allows an unauthenticated attacker to determine the existence of valid accounts on the system. To exploit the vulnerability, an HTTP request must be sent to ‘/imp/attachment.php’ including the parameters ‘id’ and ‘u’. If the specified user exists, the…
AplazadaAlta (7.2)31%—Horde IMPAIHorde Application FrameworkAI21/3/202517/6/2026
Horde IMP through 6.2.27, as used with Horde Application Framework through 5.2.23, allows XSS that leads to account takeover via a crafted text/html e-mail message with an onerror attribute (that may use base64-encoded JavaScript code), as exploited in the wild in March 2025.
ModificadaAlta (8)71%—Horde GroupwareDebian Linux28/7/202217/6/2026
Horde Groupware Webmail Edition through 5.2.22 allows a reflection injection attack through which an attacker can instantiate a driver class. This then leads to arbitrary deserialization of PHP objects.
ModificadaMedia (5.4)1.1%—Horde Mime ViewerDebian Linux11/3/202217/6/2026
lib/Horde/Mime/Viewer/Ooo.php in Horde Mime_Viewer before 2.2.4 allows XSS via an OpenOffice document, leading to account takeover in Horde Groupware Webmail Edition. This occurs after XSLT rendering.
ModificadaMedia (6.1)4.9%—Horde GroupwareDebian Linux14/2/202117/6/2026
An XSS issue was discovered in Horde Groupware Webmail Edition through 5.2.22 (where the Horde_Text_Filter library before 2.3.7 is used). The attacker can send a plain text e-mail message, with JavaScript encoded as a link or email that is mishandled by preProcess in Text2html.php, because bespoke use of \x00\x00\x00…
ModificadaMedia (6.1)0.97%—Horde GollemHorde Groupware18/5/202017/6/2026
Gollem before 3.0.13, as used in Horde Groupware Webmail Edition 5.2.22 and other products, is affected by a reflected Cross-Site Scripting (XSS) vulnerability via the HTTP GET dir parameter in the browser functionality, affecting breadcrumb output. An attacker can obtain access to a victim's webmail account by making…
ModificadaMedia (6.1)0.88%—Horde Groupware18/5/202017/6/2026
The image view functionality in Horde Groupware Webmail Edition before 5.2.22 is affected by a stored Cross-Site Scripting (XSS) vulnerability via an SVG image upload containing a JavaScript payload. An attacker can obtain access to a victim's webmail account by making them visit a malicious URL.
ModificadaMedia (6.5)9.6%—Horde GroupwareHorde FormDebian Linux23/3/202017/6/2026
This vulnerability allows remote attackers to create arbitrary files on affected installations of Horde Groupware Webmail Edition 5.2.22. Authentication is required to exploit this vulnerability. The specific flaw exists within add.php. The issue results from the lack of proper validation of user-supplied data, which…
ModificadaMedia (6.3)6.8%—Horde GroupwareDebian Linux23/3/202017/6/2026
This vulnerability allows remote attackers to execute local PHP files on affected installations of Horde Groupware Webmail Edition 5.2.22. Authentication is required to exploit this vulnerability. The specific flaw exists within edit.php. When parsing the params[template] parameter, the process does not properly…
ModificadaCrítica (9.8)72%—Horde GroupwareFedoraproject FedoraDebian Linux17/2/202017/6/2026
Horde Groupware Webmail Edition 5.2.22 allows injection of arbitrary PHP code via CSV data, leading to remote code execution.
ModificadaMedia (6.5)2.1%—Horde GroupwareDebian Linux5/11/201917/6/2026
Multiple CSRF issues in Horde Groupware Webmail Edition 5.1.2 and earlier in basic.php.
ModificadaMedia (5.3)1.1%—Horde GroupwareOpensuseDebian Linux5/11/201917/6/2026
Horde Groupware Web mail 5.1.2 has CSRF with requests to change permissions
ModificadaAlta (8.8)2.1%—Horde GroupwareDebian Linux5/11/201917/6/2026
Horde Groupware Webmail Edition has CSRF and XSS when saving search as a virtual address book
ModificadaAlta (8.8)1.1%—Horde Groupware24/10/201917/6/2026
Horde Trean, as used in Horde Groupware Webmail Edition through 5.2.22 and other products, allows CSRF, as demonstrated by the treanBookmarkTags parameter to the trean/ URI on a webmail server. NOTE: treanBookmarkTags could, for example, be a stored XSS payload.
ModificadaMedia (6.1)1.5%—Horde Groupware24/10/201917/6/2026
Horde Groupware Webmail Edition through 5.2.22 allows XSS via an admin/user.php?form=update_f&user_name= or admin/user.php?form=remove_f&user_name= or admin/config/diff.php?app= URI.
ModificadaAlta (8.8)19%—Horde GroupwareDebian Linux29/5/201917/6/2026
Remote code execution was discovered in Horde Groupware Webmail 5.2.22 and 5.2.17. Horde/Form/Type.php contains a vulnerable class that handles image upload in forms. When the Horde_Form_Type_image method onSubmit() is called on uploads, it invokes the functions getImage() and _getUpload(), which uses unsanitized user…
ModificadaMedia (5.9)4.1%—9folders NineApple MailBloop AirmailEmclient+1316/5/201817/6/2026
The S/MIME specification allows a Cipher Block Chaining (CBC) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL.
ModificadaMedia (5.9)5.5%—Apple MailBloop AirmailEmclientFlipdogsolutions Maildroid+716/5/201817/6/2026
The OpenPGP specification allows a Cipher Feedback Mode (CFB) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL. NOTE: third parties report that this is a problem in applications that mishandle the Modification Detection Code (MDC) feature or accept an obsolete packet type, not a…
ModificadaAlta (8.1)2.4%—Horde Ldap10/4/201817/6/2026
The Horde_Ldap library before 2.0.6 for Horde allows remote attackers to bypass authentication by leveraging knowledge of the LDAP bind user DN.
ModificadaMedia (5.4)1.8%—Horde Groupware20/11/201717/6/2026
In Horde Groupware 5.2.19, there is XSS via the Name field during creation of a new Resource. This can be leveraged for remote code execution after compromising an administrator account, because the CVE-2015-7984 CSRF protection mechanism can then be bypassed.
ModificadaMedia (5.4)1.1%—Horde Groupware20/11/201717/6/2026
In Horde Groupware 5.2.19 and 5.2.21, there is XSS via the Color field in a Create Task List action.
ModificadaMedia (5.4)1.1%—Horde Groupware20/11/201717/6/2026
In Horde Groupware 5.2.19-5.2.22, there is XSS via the URL field in a "Calendar -> New Event" action.