Total vulnerabilities in the database
Horde Groupware Webmail Edition through 5.2.22 allows a reflection injection attack through which an attacker can instantiate a driver class. This then leads to arbitrary deserialization of PHP objects.
Software | From | Fixed in |
---|---|---|
horde / groupware | - | 5.2.22.x |
debian / debian_linux | 10.0 | 10.0.x |