CVE-2014-9466: Medium severity Open-Xchange Open-Xchange AppSuite vulnerability
Open-Xchange (OX) AppSuite and Server before 7.4.2-rev42, 7.6.0 before 7.6.0-rev36, and 7.6.1 before 7.6.1-rev14 does not properly handle directory permissions, which allows remote authenticated users to read files via unspecified vectors, related to the "folder identifier."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-9466?
CVE-2014-9466 is classified as a medium-severity vulnerability due to its potential to allow remote authenticated users to read sensitive files.
How do I fix CVE-2014-9466?
To fix CVE-2014-9466, upgrade Open-Xchange AppSuite to version 7.4.2-rev42 or later, 7.6.0-rev36 or later, or 7.6.1-rev14 or later.
What versions of Open-Xchange are affected by CVE-2014-9466?
CVE-2014-9466 affects Open-Xchange AppSuite and Server versions prior to 7.4.2-rev42, 7.6.0-rev36, and 7.6.1-rev14.
What type of vulnerability is CVE-2014-9466?
CVE-2014-9466 is a directory permission vulnerability that allows unauthorized file access.
Who is impacted by CVE-2014-9466?
Remote authenticated users of affected versions of Open-Xchange AppSuite may be impacted by CVE-2014-9466.