Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-4113-1 | php-horde-imp security update |
EUVD |
EUVD-2025-7227 | Horde IMP through 6.2.27, as used with Horde Application Framework through 5.2.23, allows XSS that leads to account takeover via a crafted text/html e-mail message with an onerror attribute (that may use base64-encoded JavaScript code), as exploited in the wild in March 2025. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 03 Apr 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
ssvc
|
Thu, 03 Apr 2025 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Fri, 28 Mar 2025 00:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Fri, 21 Mar 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 21 Mar 2025 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Fri, 21 Mar 2025 16:30:00 +0000
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-04-03T19:57:27.039Z
Reserved: 2025-03-21T00:00:00.000Z
Link: CVE-2025-30349
Updated: 2025-04-03T12:04:26.080Z
Status : Awaiting Analysis
Published: 2025-03-21T17:15:40.853
Modified: 2025-04-03T12:15:16.210
Link: CVE-2025-30349
No data.
OpenCVE Enrichment
Updated: 2025-07-12T15:26:05Z
Debian DLA
EUVD