CVE-2019-12095
HIGHHorde Groupware < 5.2.22 - Cross-Site Request Forgery via treanBookmarkTags Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2019-12095. PoCs published by InfinitumIT.
AI-analyzed exploit summary This PoC demonstrates a combination of CSRF and XSS vulnerabilities in Horde Webmail to steal emails, execute remote commands, and perform SQL injection. It includes client-side JavaScript for exploitation and server-side PHP for data exfiltration.
Description
Horde Trean, as used in Horde Groupware Webmail Edition through 5.2.22 and other products, allows CSRF, as demonstrated by the treanBookmarkTags parameter to the trean/ URI on a webmail server. NOTE: treanBookmarkTags could, for example, be a stored XSS payload.
Exploits (1)
This PoC demonstrates a combination of CSRF and XSS vulnerabilities in Horde Webmail to steal emails, execute remote commands, and perform SQL injection. It includes client-side JavaScript for exploitation and server-side PHP for data exfiltration.
References (8)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H