CVE-2021-28060
EUVD-2021-1476614.04.2021, 17:15
A Server-Side Request Forgery (SSRF) vulnerability in Group Office 6.4.196 allows a remote attacker to forge GET requests to arbitrary URLs via the url parameter to group/api/upload.php.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| group-office | group_office | 6.4.196 |
𝑥
= Vulnerable software versions