Trovebox 4.0.0-rc6 SQL Injection / Bypss / SSRF

Trovebox versions 4.0.0-rc6 and below suffer from authentication bypass, server-side request forgery, unsafe token generation, nd remote SQL injection vulnerabilities.

Leave a Reply