Vulnerability Details CVE-2020-12645
OX App Suite 7.10.1 to 7.10.3 has improper input validation for rate limits with a crafted User-Agent header, spoofed vacation notices, and /apps/load memory consumption.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 56.0%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 5.0
Products affected by CVE-2020-12645
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:7.10.1
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:7.10.2
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:7.10.3