Security Advisory

CVE-2022-30287

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-07-28 21:08:21
Last updated 2024-10-19 13:05:46
Assigner mitre
State PUBLISHED

Description

Horde Groupware Webmail Edition through 5.2.22 allows a reflection injection attack through which an attacker can instantiate a driver class. This then leads to arbitrary deserialization of PHP objects.