CVE-2025-63406
EUVD-2025-17537113.11.2025, 19:15
An issue in Intermesh BV GroupOffice vulnerable before v.25.0.47 and 6.8.136 allows a remote attacker to execute arbitrary code via the dbToApi() and eval() in the FunctionField.php
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| group-office | group_office | 𝑥 < 6.8.136 |
| group-office | group_office | 25.0.1 ≤ 𝑥 < 25.0.47 |
𝑥
= Vulnerable software versions