EGroupware 23.1.20231113 Community Edition

CPE Details

EGroupware 23.1.20231113 Community Edition
23.1.20231113
2024-07-09
13h59 +00:00
2024-07-09
13h59 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:egroupware:egroupware:23.1.20231113:*:*:*:community:*:*:*

Informations

Vendor

egroupware

Product

egroupware

Version

23.1.20231113

Software Edition

community

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2024-40614 2024-07-06 22h00 +00:00 EGroupware before 23.1.20240624 mishandles an ORDER BY clause. This leads to json.php?menuaction=EGroupware\Api\Etemplate\Widget\Nextmatch::ajax_get_rows sort.id SQL injection by authenticated users for Address Book or InfoLog sorting.
9.8
Critique