Horde Internet Messaging Program (IMP) before 2.2.6 allows local users to read IMP configuration files and steal the Horde database password by placing the prefs.lang file containing PHP code on the server.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2002-05-03T04:00:00
Updated: 2024-08-08T04:51:08.211Z
Reserved: 2002-05-01T00:00:00
Link: CVE-2001-1258
Vulnrichment
No data.
NVD
Status : Modified
Published: 2001-07-21T04:00:00.000
Modified: 2024-11-20T23:37:16.163
Link: CVE-2001-1258
Redhat
No data.