The default installation of Horde 3.0.4 contains an administrative account with a blank password, which allows remote attackers to gain access.
https://exchange.xforce.ibmcloud.com/vulnerabilities/24576
http://www.securityfocus.com/bid/15337/
http://www.networkscanning.com/Horde-Default-Admin-Password-Vulnerability-VSS_20171.html