vendor:
Horde help module
by:
jolascoaga@514.es
9,3
CVSS
HIGH
Remote Code Execution
94
CWE
Product Name: Horde help module
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2006
Horde help module remote execution
Horde help module remote execution is a vulnerability that allows an attacker to execute arbitrary code on a vulnerable system. The vulnerability is caused by a lack of input validation in the Horde help module, which allows an attacker to inject malicious code into the module. The code is then executed on the vulnerable system, allowing the attacker to gain access to the system and potentially execute malicious code.
Mitigation:
Input validation should be implemented to prevent malicious code from being injected into the Horde help module.