Horde 3.3.12, Horde Groupware 1.2.10, and Horde Groupware Webmail Edition 1.2.10, as distributed by FTP between November 2011 and February 2012, contains an externally introduced modification (Trojan Horse) in templates/javascript/open_calendar.js, which allows remote attackers to execute arbitrary PHP code.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Sun, 13 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: debian
Published:
Updated: 2024-09-16T21:57:27.267Z
Reserved: 2011-12-14T00:00:00.000Z
Link: CVE-2012-0209
No data.
Status : Deferred
Published: 2012-09-25T22:55:00.753
Modified: 2025-04-11T00:51:21.963
Link: CVE-2012-0209
No data.
OpenCVE Enrichment
No data.
Weaknesses