Files
CVEs-PoC/2016/CVE-2016-6189.md
T
2024-05-26 14:27:05 +02:00

18 lines
650 B
Markdown

### [CVE-2016-6189](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-6189)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
Incomplete blacklist in SOGo before 2.3.12 and 3.x before 3.1.1 allows remote authenticated users to obtain sensitive information by reading the fields in the (1) ics or (2) XML calendar feeds.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/Live-Hack-CVE/CVE-2016-6189