HTTP: Horde Groupware Webmail Data Import PHP Code Injection

This signature detects attempts to exploit a known vulnerability against Horde Groupware Webmail. A successful attack can lead to command injection and arbitrary code execution.

Extended Description

Horde Groupware Webmail Edition 5.2.22 allows injection of arbitrary PHP code via CSV data, leading to remote code execution.

Affected Products

Debian debian_linux

References

CVE: CVE-2020-8518

Short Name
HTTP:CTS:HORDE-GRPWRE-CODE-INJ
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
CVE-2020-8518 Code Data Groupware Horde Import Injection PHP Webmail
Release Date
01/05/2022
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3590
False Positive
Unknown
Vendors

Horde

Fedoraproject

Debian

CVSS Score

7.5

Found a potential security threat?