Skip to main content

CVE-2014-1691

CVSS Score Not Available
81.35%
HIGH RiskEPSS (99th percentile)

The framework/Util/lib/Horde/Variables.php script in the Util library in Horde before 5.1.1 allows remote attackers to conduct object injection attacks and execute arbitrary PHP code via a crafted serialized object in the _formvars form.

Published: 4/1/2014
Modified: 4/12/2025
Back to CVE Lookup

Vulnerability Summary

EPSS Score (Exploitation Probability)

81.35%HIGH Exploitation Risk
99th percentile

This vulnerability has a 81.35% probability of being exploited in the next 30 days, ranking higher than 99% of all scored CVEs.