Cross-site scripting (XSS) vulnerability in Open-Xchange (OX) AppSuite 6.22.3 and 6.22.4

Cross-site scripting (XSS) vulnerability in Open-Xchange (OX) AppSuite 6.22.3 and 6.22.4

CVE-2013-6242 · MEDIUM Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Cross-site scripting (XSS) vulnerability in the frontend in Open-Xchange (OX) AppSuite 6.22.3 before 6.22.3-rev5 and 6.22.4 before 6.22.4-rev12 allows remote attackers to inject arbitrary web script or HTML via the subject of an email. NOTE: the vulnerabilities related to the body of the email and the publication name were SPLIT from this CVE ID because they affect different sets of versions.

Learn more about our Web App Pen Testing.