← Back

CVE-2007-2720

nvd nist
Published: May 16, 2007Modified: Apr 23, 2026

JSON object

Loading...
4.3
Vector
AV:N/AC:M/Au:N/C:P/I:N/A:N
Exploitability: 8.6 / Impact: 2.9
Source: NVD

Description

Group-Office before 2.16-13 does not properly validate user IDs, which allows remote attackers to obtain sensitive information via certain requests for (1) message.php and (2) messages.php in modules/email/. NOTE: some of these details are obtained from third party information.

Affected (1)

1 product
Group Office Groupware
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 2.16.12

Timeline

No history available yet.