Open-Xchange AppSuite是德国Open-Xchange公司的一套Web云桌面环境。该环境允许用户更直观的管理电子邮件、任务和文件等。 Open-Xchange AppSuite存在安全漏洞,该漏洞源于存在先检查后使用(TOCTOU)漏洞,允许攻击者注入能够绕过现有网络拒绝列表的配置。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| OX Software GmbH | OX App Suite | 0 ~ 7.10.6-rev42 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-26439 | 7.6 HIGH | Open-Xchange AppSuite SQL注入漏洞 |
| CVE-2023-26451 | 7.5 HIGH | Open-Xchange AppSuite 安全特征问题漏洞 |
| CVE-2023-26440 | 7.1 HIGH | Open-Xchange AppSuite SQL注入漏洞 |
| CVE-2023-26441 | 5.7 MEDIUM | Open-Xchange AppSuite 路径遍历漏洞 |
| CVE-2023-26443 | 5.5 MEDIUM | Open-Xchange AppSuite SQL注入漏洞 |
| CVE-2023-26450 | 5.4 MEDIUM | Open-Xchange AppSuite 跨站脚本漏洞 |
| CVE-2023-26449 | 5.4 MEDIUM | Open-Xchange AppSuite 跨站脚本漏洞 |
| CVE-2023-26448 | 5.4 MEDIUM | Open-Xchange AppSuite 跨站脚本漏洞 |
| CVE-2023-26447 | 5.4 MEDIUM | Open-Xchange AppSuite 跨站脚本漏洞 |
| CVE-2023-26446 | 5.4 MEDIUM | Open-Xchange AppSuite 跨站脚本漏洞 |
| CVE-2023-26445 | 5.4 MEDIUM | Open-Xchange AppSuite 跨站脚本漏洞 |
| CVE-2023-26430 | 3.5 LOW | Open-Xchange AppSuite 命令注入漏洞 |
| CVE-2023-26442 | 3.2 LOW | Open-Xchange AppSuite 代码问题漏洞 |
No comments yet