Vulnerabilities (CVE)

Filtered by vendor Kopano Subscribe
Filtered by product Groupware Core
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-28994 2 Kopano, Zarafa 2 Groupware Core, Zarafa 2022-07-12 5.0 MEDIUM 7.5 HIGH
kopano-ical (formerly zarafa-ical) in Kopano Groupware Core through 8.7.16, 9.x through 9.1.0, 10.x through 10.0.7, and 11.x through 11.0.1 and Zarafa 6.30.x through 7.2.x allows memory exhaustion via long HTTP headers.
CVE-2019-19907 1 Kopano 1 Groupware Core 2020-01-02 7.5 HIGH 9.8 CRITICAL
HrAddFBBlock in libfreebusy/freebusyutil.cpp in Kopano Groupware Core before 8.7.7 allows out-of-bounds access, as demonstrated by mishandling of an array copy during parsing of ICal data.