Filtered by vendor Horde Subscriptions
Filtered by product Imp Subscriptions
Total 22 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2001-1258 1 Horde 1 Imp 2025-04-03 N/A
Horde Internet Messaging Program (IMP) before 2.2.6 allows local users to read IMP configuration files and steal the Horde database password by placing the prefs.lang file containing PHP code on the server.
CVE-2002-0181 1 Horde 2 Horde, Imp 2025-04-03 N/A
Cross-site scripting vulnerability in status.php3 for IMP 2.2.8 and HORDE 1.2.7 allows remote attackers to execute arbitrary web script and steal cookies of other IMP/HORDE users via the script parameter.