CVE-2022-30287
EUVD-2022-5223928.07.2022, 22:15
Horde Groupware Webmail Edition through 5.2.22 allows a reflection injection attack through which an attacker can instantiate a driver class. This then leads to arbitrary deserialization of PHP objects.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| horde | groupware | 𝑥 ≤ 5.2.22 |
| debian | debian_linux | 10.0 |
𝑥
= Vulnerable software versions
Debian Releases
References