Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
MEDIUM 5.4
CVE-2023-29052
Users were able to define disclaimer texts for an upsell shop dialog that would contain script code that was not sanitized correctly. Attackers could…
Ox App Suite
Mitigation only
MEDIUM 6.1
CVE-2021-33492
OX App Suite 7.10.5 allows XSS via an OX Chat room name.
Ox App Suite
No fix yet
MEDIUM 6.1
CVE-2021-33494
OX App Suite 7.10.5 allows XSS via an OX Chat room title during typing rendering.
Ox App Suite
No fix yet
MEDIUM 6.1
CVE-2021-33495
OX App Suite 7.10.5 allows XSS via an OX Chat system message.
Ox App Suite
No fix yet
MEDIUM 6.1
CVE-2021-26698
OX App Suite before 7.10.3-rev32 and 7.10.4 before 7.10.4-rev18 allows XSS via a code snippet (user-generated content) when a sharing link is created…
Open Xchange Appsuite
No fix yet
MEDIUM 6.1
CVE-2021-37402
OX App Suite before 7.10.3-rev32 and 7.10.4 before 7.10.4-rev18 allows XSS via binary data that is mishandled when the legacy dataretrieval endpoint …
Open Xchange Appsuite
Mitigation only
MEDIUM 6.1
CVE-2021-37403
OX App Suite before 7.10.3-rev32 and 7.10.4 before 7.10.4-rev18 allows XSS via a code snippet (user-generated content) when a sharing link is created…
Open Xchange Appsuite
Mitigation only
MEDIUM 5.4
CVE-2021-26699
OX App Suite before 7.10.3-rev4 and 7.10.4 before 7.10.4-rev4 allows SSRF via a shared SVG document that is mishandled by the imageconverter componen…
Open Xchange Appsuite
No fix yet
HIGH 7.5
CVE-2020-8543
OX App Suite through 7.10.3 has Improper Input Validation.
Open Xchange Appsuite
No fix yet
MEDIUM 6.5
CVE-2020-8541
OX App Suite through 7.10.3 allows XXE attacks.
Open Xchange Appsuite
No fix yet
MEDIUM 6.5
CVE-2020-8544
OX App Suite through 7.10.3 allows SSRF.
Open Xchange Appsuite
No fix yet
MEDIUM 5.4
CVE-2020-8542
OX App Suite through 7.10.3 allows XSS.
Open Xchange Appsuite
No fix yet
MEDIUM 6.1
CVE-2020-9426
OX Guard 2.10.3 and earlier allows XSS.
Ox Guard
No fix yet
MEDIUM 5.0
CVE-2020-9427
OX Guard 2.10.3 and earlier allows SSRF.
Ox Guard
No fix yet
MEDIUM 6.1
CVE-2013-7485
Cross-site scripting (XSS) vulnerability in the backend in Open-Xchange (OX) AppSuite 7.2.x before 7.2.2-rev26 and 7.4.x before 7.4.0-rev16 allows re…
Open Xchange Appsuite
No fix yet
MEDIUM 6.1
CVE-2013-7486
Cross-site scripting (XSS) vulnerability in the backend in Open-Xchange (OX) AppSuite 7.2.x before 7.2.2-rev27 and 7.4.x before 7.4.0-rev20 allows re…
Open Xchange Appsuite
No fix yet
MEDIUM 6.1
CVE-2013-6242
Cross-site scripting (XSS) vulnerability in the frontend in Open-Xchange (OX) AppSuite 6.22.3 before 6.22.3-rev5 and 6.22.4 before 6.22.4-rev12 allow…
Open Xchange Appsuite
No fix yet
MEDIUM 6.1
CVE-2019-14227
OX App Suite 7.10.1 and 7.10.2 allows XSS.
Open Xchange Appsuite
No fix yet
MEDIUM 5.4
CVE-2019-14225
OX App Suite 7.10.1 and 7.10.2 allows SSRF.
Open Xchange Appsuite
No fix yet
HIGH 8.1
CVE-2019-11521
OX App Suite 7.10.1 allows Content Spoofing.
Open Xchange Appsuite
No fix yet
HIGH 8.8
CVE-2018-10986
OX Guard 2.8.0 has CSRF.
Ox Guard
Mitigation only
CRITICAL 9.8
CVE-2017-5212
Open-Xchange GmbH OX App Suite 7.8.3 is affected by: Incorrect Access Control.
Open Xchange Appsuite
No fix yet
MEDIUM 5.3
CVE-2014-2078
The backend in Open-Xchange (OX) AppSuite 7.4.2 before 7.4.2-rev9 allows remote attackers to obtain sensitive information about user email addresses …
Open Xchange Appsuite
Mitigation only
MEDIUM 6.1
CVE-2016-6846
Cross-site scripting (XSS) vulnerability in Open-Xchange (OX) AppSuite backend before 7.6.2-rev59, 7.8.0 before 7.8.0-rev38, 7.8.2 before 7.8.2-rev8;…
Documentconverter Api
Mitigation only
HIGH 7.5
CVE-2013-5200
The (1) REST and (2) memcache interfaces in the Hazelcast cluster API in Open-Xchange AppSuite 7.0.x before 7.0.2-rev15 and 7.2.x before 7.2.2-rev16 …
Open Xchange Appsuite
No fix yet
MEDIUM 5.8
CVE-2013-1651
OXUpdater in Open-Xchange Server before 6.20.7 rev14, 6.22.0 before rev13, and 6.22.1 before rev14 does not verify X.509 certificates from SSL server…
Open Xchange Server
No fix yet
MEDIUM 5.0
CVE-2013-1647
Multiple CRLF injection vulnerabilities in Open-Xchange Server before 6.20.7 rev14, 6.22.0 before rev13, and 6.22.1 before rev14 allow remote attacke…
Open Xchange Server
No fix yet
MEDIUM 5.0
CVE-2013-2582
CRLF injection vulnerability in the redirect servlet in Open-Xchange AppSuite and Server before 6.22.0 rev15, 6.22.1 before rev17, 7.0.1 before rev6,…
Open Xchange Appsuite
Mitigation only