First published: Tue Jan 12 2021(Updated: )
OX App Suite through 7.10.4 allows XSS via the subject of a task.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Open-xchange Open-xchange Appsuite | <=7.10.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-23936 is a vulnerability in OX App Suite through 7.10.4 that allows cross-site scripting (XSS) attacks via the subject of a task.
CVE-2021-23936 affects OX App Suite through 7.10.4 by allowing XSS attacks through the subject of a task.
CVE-2021-23936 has a severity keyword of 'medium' with a severity value of 6.1.
An attacker can exploit CVE-2021-23936 by injecting malicious scripts into the subject of a task, which will be executed when viewed by a victim.
Yes, updating OX App Suite to version 7.10.5 or higher will fix the vulnerability.