CVE-2021-28060
14.04.2021, 17:15
A Server-Side Request Forgery (SSRF) vulnerability in Group Office 6.4.196 allows a remote attacker to forge GET requests to arbitrary URLs via the url parameter to group/api/upload.php.
Vendor | Product | Version |
---|---|---|
group-office | group_office | 6.4.196 |
𝑥
= Vulnerable software versions