Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in mail compose in Open-Xchange OX App Suite before 7.6.3-rev31, 7.8.x before 7.8.2-rev31, 7.8.3 before 7.8.3-rev41, and 7.8.4 before 7.8.4-rev28 allows remote attackers to inject arbitrary web script or HTML via the data-target attribute in an HTML page with data-toggle gadgets.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Open-Xchange OX App Suite mail compose组件跨站脚本漏洞
Vulnerability Description
Open-Xchange OX App Suite是美国Open-Xchange公司的一套Web云桌面环境。该环境允许用户更直观的管理电子邮件、任务和文件等。mail compose是其中的一个邮件编辑组件。 Open-Xchange OX App Suite中的mail compose组件存在跨站脚本漏洞。远程攻击者可借助带有data-toggle小工具的HTML页面中的data-target属性利用该漏洞注入任意的Web脚本或HTML。以下版本受到影响:Open-Xchange OX App Suit
CVSS Information
N/A
Vulnerability Type
N/A