CVE-2025-53603 | Alinto SOPE SOGo up to 5.12.2 Query String NGHashMap.m null pointer dereference (EUVD-2025-20097 / Nessus ID 243241)
A vulnerability marked as problematic has been reported in Alinto SOPE SOGo up to 5.12.2. This impacts an unknown function of the file sope-core/NGExtensions/NGHashMap.m of the component Query String Handler. This manipulation causes null pointer dereference.
This vulnerability appears as CVE-2025-53603. The attack may be initiated remotely. There is no available exploit.
It is recommended to apply a patch to fix this issue.