Description
Horde Groupware Webmail Edition is a free, enterprise ready, browser-based communication suite. Pedro Ribeiro reported a remote code execution bug that is affecting Horde versions from at least horde 3.1.x to 5.1.1.
Remediation
Upgrade to the latest version of Horde.
References
Related Vulnerabilities
Apache Traffic Server HTTP Request Smuggling Vulnerability (CVE-2020-17509 )
WordPress Plugin Soundy Audio Playlist Cross-Site Scripting (4.6)
Oracle Database Server CVE-2010-2415 Vulnerability (CVE-2010-2415)
WordPress Plugin Vertical SlideShow 'upload.php' Arbitrary File Upload (2.1)
Liferay DXP Insufficiently Protected Credentials Vulnerability (CVE-2020-15841)