First published: Tue Jan 29 2019(Updated: )
OX App Suite 7.8.4 and earlier allows Server-Side Request Forgery.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Open-Xchange App Suite Backend | <=7.8.4 |
http://software.open-xchange.com/OX6/doc/Release_Notes_for_Patch_Release_4791_7.8.4_2018-06-25.pdf
https://software.open-xchange.com/OX6/doc/Release_Notes_for_Patch_Release_4790_7.8.3_2018-06-25.pdf
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-12609 is classified as a medium severity vulnerability due to its potential for server-side request forgery.
To fix CVE-2018-12609, upgrade Open-Xchange App Suite to version 7.8.5 or later.
CVE-2018-12609 affects Open-Xchange App Suite versions 7.8.4 and earlier.
Yes, CVE-2018-12609 can potentially lead to data breaches through unauthorized access to internal resources.
Server-Side Request Forgery in CVE-2018-12609 allows attackers to send unauthorized requests from the server to internal or external systems.