CyberSec.Space Logo
Back to CVE Browser

CVE-2006-1260

MEDIUM
5.0
CVSS Severity Score
EPSS Score0.0470%
EPSS Percentile12.06th
PublishedMar 19, 2006
Last ModifiedApr 16, 2026

Vulnerability Description

Horde Application Framework 3.0.9 allows remote attackers to read arbitrary files via a null character in the url parameter in services/go.php, which bypasses a sanity check.

Affected Platforms (CPE)

πŸ“¦
Horde

Horde

= 1.2
πŸ“¦
Horde

Horde

= 1.2.1
πŸ“¦
Horde

Horde

= 1.2.2
πŸ“¦
Horde

Horde

= 1.2.3
πŸ“¦
Horde

Horde

= 1.2.4
πŸ“¦
Horde

Horde

= 1.2.5
πŸ“¦
Horde

Horde

= 1.2.6
πŸ“¦
Horde

Horde

= 1.2.7
πŸ“¦
Horde

Horde

= 1.2.8
πŸ“¦
Horde

Horde

= 2.0
πŸ“¦
Horde

Horde

= 2.1
πŸ“¦
Horde

Horde

= 2.1.3
πŸ“¦
Horde

Horde

= 2.2
πŸ“¦
Horde

Horde

= 2.2.1
πŸ“¦
Horde

Horde

= 2.2.3
πŸ“¦
Horde

Horde

= 2.2.4
πŸ“¦
Horde

Horde

= 2.2.4_rc1
πŸ“¦
Horde

Horde

= 2.2.5
πŸ“¦
Horde

Horde

= 2.2.6
πŸ“¦
Horde

Horde

= 2.2.7
πŸ“¦
Horde

Horde

= 2.2.8
πŸ“¦
Horde

Horde

= 2.2.9
πŸ“¦
Horde

Horde

= 3.0
πŸ“¦
Horde

Horde

= 3.0.1
πŸ“¦
Horde

Horde

= 3.0.2
πŸ“¦
Horde

Horde

= 3.0.3
πŸ“¦
Horde

Horde

= 3.0.4
πŸ“¦
Horde

Horde

= 3.0.4_rc1
πŸ“¦
Horde

Horde

= 3.0.4_rc2
πŸ“¦
Horde

Horde

= 3.0.6
πŸ“¦
Horde

Horde

= 3.0.7
πŸ“¦
Horde

Horde

= 3.0.8
πŸ“¦
Horde

Horde

= 3.0.9

References & Advisories

Related Vulnerabilities