Remote Code Execution Vulnerability in EGroupware
CVE-2026-27823
8.7HIGH
What is CVE-2026-27823?
A severe vulnerability in EGroupware has been identified that allows an authenticated attacker to execute arbitrary commands on the server. If user self-registration is enabled, this vulnerability can potentially be exploited without prior authentication. The issue arises due to a combination of inadequate authorization checks, alongside a file write primitive and an arbitrary file read vulnerability, which together could lead to a complete system compromise. A patch has been released in versions 26.2.20260224 and 23.1.20260224 to address this issue.
Affected Version(s)
egroupware <= 26.2.20260216 <= 26.2.20260216
egroupware <= 23.1.20260131 <= 23.1.20260131
