Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Open-Xchange:
>> Ox App Suite
Security Vulnerabilities
CVE-2021-38374
OX App Suite through through 7.10.5 allows XSS via a crafted snippet that has an app loader reference within an app loader URL.
CVSS Score
5.4
EPSS Score
0.002
Published
2021-11-22
CVE-2021-38375
OX App Suite through 7.10.5 allows XSS via the alt attribute of an IMG element in a truncated e-mail message.
CVSS Score
6.1
EPSS Score
0.003
Published
2021-11-22
CVE-2021-38376
OX App Suite through 7.10.5 has Incorrect Access Control for retrieval of session information via the rampup action of the login API call.
CVSS Score
5.3
EPSS Score
0.003
Published
2021-11-22
CVE-2021-38377
OX App Suite through 7.10.5 allows XSS via JavaScript code in an anchor HTML comment within truncated e-mail, because there is a predictable UUID with HTML transformation results.
CVSS Score
6.1
EPSS Score
0.003
Published
2021-11-22
CVE-2021-38378
OX App Suite 7.10.5 allows Information Exposure because a caching mechanism can caused a Modified By response to show a person's name.
CVSS Score
4.3
EPSS Score
0.003
Published
2021-11-22
CVE-2021-33488
chat in OX App Suite 7.10.5 has Improper Input Validation. A user can be redirected to a rogue OX Chat server via a development-related hook.
CVSS Score
6.1
EPSS Score
0.003
Published
2021-11-22
CVE-2021-33489
OX App Suite through 7.10.5 allows XSS via JavaScript code in a shared XCF file.
CVSS Score
6.1
EPSS Score
0.003
Published
2021-11-22
CVE-2021-33490
OX App Suite through 7.10.5 allows XSS via a crafted snippet in a shared mail signature.
CVSS Score
6.1
EPSS Score
0.003
Published
2021-11-22
Prev
Page 5
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved