← Back to browse · API

CVE-2026-25512

Severity
CRITICAL
CVSS
9.4
EPSS
0.18536
Risk score
44.09
CISA KEV
No
PoC
No
Published
2026-02-04
Modified
2026-02-05
First seen
2026-08-07
Aliases
EUVD-2026-5349
Products
Intermesh:groupoffice < 25.0.82, Intermesh:groupoffice < 26.0.5, Intermesh:groupoffice < 6.8.150
Sources
euvd EUVD-2026-5349

Description

Group-Office is an enterprise customer relationship management and groupware tool. Prior to versions 6.8.150, 25.0.82, and 26.0.5, there is a remote code execution (RCE) vulnerability in Group-Office. The endpoint email/message/tnefAttachmentFromTempFile directly concatenates the user-controlled parameter tmp_file into an exec() call. By injecting shell metacharacters into tmp_file, an authenticated attacker can execute arbitrary system commands on the server. This issue has been patched in versions 6.8.150, 25.0.82, and 26.0.5.

References