Path Traversal Flaw in Horde IMP Affects Configuration Files
CVE-2026-58451
Key Information:
Badges
What is CVE-2026-58451?
The path traversal vulnerability in Horde IMP allows authenticated attackers to exploit improper validation in lib/Compose.php, enabling them to read arbitrary files from the server's filesystem. This occurs by embedding traversal sequences after an expected CKEditor path prefix in img src URLs. The flaw enables attackers to bypass prefix validation and utilize file_get_contents() to access sensitive data, which can be sent out as MIME parts in emails. Additionally, unauthenticated exploitation is possible through cross-site request forgery (CSRF), targeting active authenticated sessions.
Affected Version(s)
imp 0
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V4
Timeline
- ๐ก
Public PoC available
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved
