Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Date: Wed, 19 Feb 2014 10:08:37 +0000
From: Pedro Ribeiro <>
Cc: Ralf Becker <>
Subject: CVE request: remote code execution in egroupware <= 1.8.005


I have discovered a remote code execution via php unserialize in egroupware
<= 1.8.005.
Can you please assign a CVE for this vulnerability?

The full report can be obtained from my repo in

The changelog can be seen at and new
versions can be obtained from

Thanks in advance.


Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.