Files
CVEs-PoC/2021/CVE-2021-28060.md
2025-09-29 21:09:30 +02:00

678 B

CVE-2021-28060

Description

A Server-Side Request Forgery (SSRF) vulnerability in Group Office 6.4.196 allows a remote attacker to forge GET requests to arbitrary URLs via the url parameter to group/api/upload.php.

POC

Reference

Github

No PoCs found on GitHub currently.