First published: Mon Aug 31 2020(Updated: )
OX App Suite 7.10.3 and earlier allows SSRF, related to the mail account API and the /folder/list API.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Open-xchange Open-xchange Appsuite | <=7.10.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-12644 refers to a vulnerability in OX App Suite 7.10.3 and earlier that allows SSRF (Server-Side Request Forgery) related to the mail account API and the /folder/list API.
CVE-2020-12644 has a severity value of 5, which is considered medium.
CVE-2020-12644 affects Open-xchange Appsuite versions up to and including 7.10.3.
SSRF stands for Server-Side Request Forgery and refers to a vulnerability that allows an attacker to make requests on behalf of the server.
Yes, you can find more information about CVE-2020-12644 at the following references: [Link1](https://exchange.xforce.ibmcloud.com/vulnerabilities/187116), [Link2](https://seclists.org/fulldisclosure/2020/Aug/14), [Link3](https://www.open-xchange.com/)