Horde Webmail contains zero-day RCE bug with no patch on the horizon | The Daily Swig

Read full post . . . or http://www.go-que.com/horde-webmail-contains-zero-day-rce-bug-with-no-patch-on-the-horizon-the-daily-swig

Read full post . . . or https://www.google.com/url?rct=j&sa=t&url=https://portswigger.net/daily-swig/horde-webmail-contains-zero-day-rce-bug-with-no-patch-on-the-horizon&ct=ga&cd=CAIyGjgzMjVmMTg3YzNmN2FkZTk6Y29tOmVuOlVT&usg=AOvVaw2L-uw4tZAofcnOA5ShgF_f

The Horde Webmail vulnerability (CVE-2022-30287) can be abused with a single GET request, which brings cross-site request forgery (CSRF) into play … https://www.google.com/url?rct=j&sa=t&url=https://portswigger.net/daily-swig/horde-webmail-contains-zero-day-rce-bug-with-no-patch-on-the-horizon&ct=ga&cd=CAIyGjgzMjVmMTg3YzNmN2FkZTk6Y29tOmVuOlVT&usg=AOvVaw2L-uw4tZAofcnOA5ShgF_f

Go Que Newsroom
Categories