{
  "threat_severity" : "Important",
  "public_date" : "2008-01-10T00:00:00Z",
  "bugzilla" : {
    "description" : "horde: input validation vulnerabilities",
    "id" : "428625",
    "url" : "https://bugzilla.redhat.com/show_bug.cgi?id=428625"
  },
  "cwe" : "CWE-20",
  "details" : [ "IMP Webmail Client 4.1.5, Horde Application Framework 3.1.5, and Horde Groupware Webmail Edition 1.0.3 does not validate unspecified HTTP requests, which allows remote attackers to (1) delete arbitrary e-mail messages via a modified numeric ID or (2) \"purge\" deleted emails via a crafted email message." ],
  "references" : [ "https://www.cve.org/CVERecord?id=CVE-2007-6018\nhttps://nvd.nist.gov/vuln/detail/CVE-2007-6018" ],
  "name" : "CVE-2007-6018",
  "csaw" : false
}