Vulnerability Details CVE-2022-31469
OX App Suite through 7.10.6 allows XSS via a deep link, as demonstrated by class="deep-link-app" for a /#!!&app=%2e./ URI.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 67.0%
CVSS Severity
CVSS v3 Score 6.1
Products affected by CVE-2022-31469
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:6.20.7
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:6.22.0
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:6.22.1
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:6.22.3
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:6.22.4
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:7.0.1
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:7.0.2
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:7.10.0
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:7.10.1
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:7.10.2
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:7.10.3
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:7.10.4
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:7.10.5
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:7.10.6
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:7.2.0
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:7.2.1
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:7.2.2
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:7.4.0
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:7.4.1
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:7.4.2
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:7.6.0
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:7.6.1
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:7.6.2
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:7.6.3
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:7.8.0
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:7.8.1
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:7.8.2
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:7.8.3
-
cpe:2.3:a:open-xchange:open-xchange_appsuite:7.8.4