Required CVE Record Information
Description
chat in OX App Suite 7.10.5 has Improper Input Validation. A user can be redirected to a rogue OX Chat server via a development-related hook.
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 3 Total
- https://open-xchange.com x_transferred
- seclists.org: 20211121 Open-Xchange Security Advisory 2021-11-18 mailing-listx_transferred
- http://packetstormsecurity.com/files/165028/OX-App-Suite-Ox-Documents-7.10.x-XSS-Code-Injection-Traversal.html x_transferred