Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-27823

Опубликовано: 20 июл. 2026
Источник: nvd
EPSS Низкий

Описание

A vulnerability has been identified in EGroupware that may lead to Remote Code Execution (RCE). The issue allows an authenticated attacker to execute arbitrary commands on the server. If user self-registration is enabled, the vulnerability may be exploitable without prior authentication. The vulnerability stems from improper authorization checks combined with a file write primitive and an arbitrary file read vulnerability, which together enable full system compromise. This has been patched in versions 26.2.20260224 and 23.1.20260224.

EPSS

Процентиль: 61%
0.01028
Низкий

Дефекты

CWE-285

Связанные уязвимости

debian
около 1 месяца назад

A vulnerability has been identified in EGroupware that may lead to Rem ...

github
около 1 месяца назад

EGroupware has a Remote Code Execution Vulnerability

EPSS

Процентиль: 61%
0.01028
Низкий

Дефекты

CWE-285