Open-Xchange AppSuite是德国Open-Xchange公司的一套Web云桌面环境。该环境允许用户更直观的管理电子邮件、任务和文件等。 Open-Xchange AppSuite 存在安全特征问题漏洞,该漏洞源于集成的oAuth授权服务在生成授权令牌时使用了不够安全的随机性函数。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| OX Software GmbH | OX App Suite | 0 ~ 8.11 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-26439 | 7.6 HIGH | Open-Xchange AppSuite SQL注入漏洞 |
| CVE-2023-26440 | 7.1 HIGH | Open-Xchange AppSuite SQL注入漏洞 |
| CVE-2023-26441 | 5.7 MEDIUM | Open-Xchange AppSuite 路径遍历漏洞 |
| CVE-2023-26443 | 5.5 MEDIUM | Open-Xchange AppSuite SQL注入漏洞 |
| CVE-2023-26450 | 5.4 MEDIUM | Open-Xchange AppSuite 跨站脚本漏洞 |
| CVE-2023-26449 | 5.4 MEDIUM | Open-Xchange AppSuite 跨站脚本漏洞 |
| CVE-2023-26448 | 5.4 MEDIUM | Open-Xchange AppSuite 跨站脚本漏洞 |
| CVE-2023-26447 | 5.4 MEDIUM | Open-Xchange AppSuite 跨站脚本漏洞 |
| CVE-2023-26446 | 5.4 MEDIUM | Open-Xchange AppSuite 跨站脚本漏洞 |
| CVE-2023-26445 | 5.4 MEDIUM | Open-Xchange AppSuite 跨站脚本漏洞 |
| CVE-2023-26438 | 4.3 MEDIUM | Open-Xchange AppSuite 跨站脚本漏洞 |
| CVE-2023-26430 | 3.5 LOW | Open-Xchange AppSuite 命令注入漏洞 |
| CVE-2023-26442 | 3.2 LOW | Open-Xchange AppSuite 代码问题漏洞 |
No comments yet