CVE-2020-15002: SSRF
Published Oct 23, 2020
·Updated
OX App Suite through 7.10.3 allows SSRF via the the /ajax/messaging/message message API.
Affected Software
1 affected component
Open-Xchange Open-Xchange AppSuite<=7.10.3
Event History
Oct 23, 2020
CVE Published
via MITRE·04:51 AM
Data Sourced
via MITRE·04:51 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID is CVE-2020-15002.
2
What is the severity level of CVE-2020-15002?
The severity level of CVE-2020-15002 is medium with a value of 5.
3
What is the affected software of CVE-2020-15002?
The affected software of CVE-2020-15002 is Open-xchange Appsuite version up to and inclusive of 7.10.3.
4
What is the description of CVE-2020-15002?
CVE-2020-15002 is a vulnerability in OX App Suite that allows SSRF via the /ajax/messaging/message API.
5
How can I fix CVE-2020-15002?
To fix CVE-2020-15002, update Open-xchange Appsuite to a version higher than 7.10.3.