cve/2021/CVE-2021-28060.md
2024-06-18 02:51:15 +02:00

667 B

CVE-2021-28060

Description

A Server-Side Request Forgery (SSRF) vulnerability in Group Office 6.4.196 allows a remote attacker to forge GET requests to arbitrary URLs via the url parameter to group/api/upload.php.

POC

Reference

Github

No PoCs found on GitHub currently.