open-xchange

272 tracked vulnerabilities.

CVE-2021-44209 MEDIUM
OX App Suite <= 7.10.5 - Cross-Site Scripting via HTML5 AUDIO Element
Mar 28, 2022
CVSS 6.1
EPSS 0.00
CVE-2021-44208 MEDIUM
OX App Suite <= 7.10.5 - Cross-Site Scripting via Chat System Message
Mar 28, 2022
CVSS 6.1
EPSS 0.00
CVE-2021-38378 MEDIUM
OX App Suite 7.10.5 - Info Disclosure
Nov 22, 2021
CVSS 4.3
EPSS 0.00
CVE-2021-38377 MEDIUM
OX App Suite <= 7.10.5 - Cross-Site Scripting via Predictable UUID in Truncated Email
Nov 22, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-38376 MEDIUM
OX App Suite <7.10.5 - Info Disclosure
Nov 22, 2021
CVSS 5.3
EPSS 0.00
CVE-2021-38375 MEDIUM
OX App Suite <= 7.10.5 - Cross-Site Scripting via Truncated Email IMG Alt Attribute
Nov 22, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-38374 MEDIUM
OX App Suite <= 7.10.5 - Cross-Site Scripting via Crafted Snippet with App Loader Reference
Nov 22, 2021
CVSS 5.4
EPSS 0.00
CVE-2021-33495 MEDIUM
OX App Suite 7.10.5 - Cross-Site Scripting via OX Chat System Message
Nov 22, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-33494 MEDIUM
OX App Suite 7.10.5 - Cross-Site Scripting via OX Chat Room Title
Nov 22, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-33493 MEDIUM
OX App Suite <7.10.5 - Code Injection
Nov 22, 2021
CVSS 6.0
EPSS 0.00
CVE-2021-33492 MEDIUM
OX App Suite 7.10.5 - Cross-Site Scripting via Chat Room Name
Nov 22, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-33491 MEDIUM
OX App Suite <7.10.5 - Path Traversal
Nov 22, 2021
CVSS 6.5
EPSS 0.04
CVE-2021-33490 MEDIUM
OX App Suite < 7.10.5 - Stored Cross-Site Scripting via Shared Mail Signature Snippet
Nov 22, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-33489 MEDIUM
OX App Suite < 7.10.5 - Cross-Site Scripting via Shared XCF File
Nov 22, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-33488 MEDIUM
OX App Suite 7.10.5 - Open Redirect
Nov 22, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-28095 MEDIUM
OX Documents <7.10.5-rev5 - Info Disclosure
Jul 30, 2021
CVSS 4.8
EPSS 0.00
CVE-2021-28094 MEDIUM
OX Documents <7.10.5-rev7 - Info Disclosure
Jul 30, 2021
CVSS 6.5
EPSS 0.00
CVE-2021-28093 MEDIUM
OX Documents <7.10.5-rev5 - Info Disclosure
Jul 30, 2021
CVSS 6.5
EPSS 0.00
CVE-2021-37403 MEDIUM
Open-xchange Appsuite - XSS
Jul 22, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-37402 MEDIUM
Open-xchange Appsuite - XSS
Jul 22, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-26699 MEDIUM
Open-xchange Appsuite - SSRF
Jul 22, 2021
CVSS 5.4
EPSS 0.00
CVE-2021-26698 MEDIUM
Open-xchange Appsuite - XSS
Jul 22, 2021
CVSS 6.1
EPSS 0.01
CVE-2021-31935 MEDIUM
Open-xchange Appsuite < 7.10.4 - XSS
Apr 30, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-31934 MEDIUM
Open-xchange Appsuite < 7.10.4 - XSS
Apr 30, 2021
CVSS 6.1
EPSS 0.00
CVE-2021-23936 MEDIUM
Open-xchange Appsuite < 7.10.4 - XSS
Jan 12, 2021
CVSS 6.1
EPSS 0.00