First published: Tue Jul 27 2021(Updated: )
OX Documents before 7.10.5-rev5 has Incorrect Access Control of converted images because hash collisions can occur, due to use of Adler32.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Open-xchange Documents | <7.10.5 | |
Open-xchange Documents | =7.10.5 | |
Open-xchange Documents | =7.10.5-revision1 | |
Open-xchange Documents | =7.10.5-revision2 | |
Open-xchange Documents | =7.10.5-revision3 | |
Open-xchange Documents | =7.10.5-revision4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-28093 is classified as a medium severity vulnerability that affects access control of converted images.
To remediate CVE-2021-28093, update Open-Xchange Documents to version 7.10.5-rev6 or later.
CVE-2021-28093 affects Open-Xchange Documents versions prior to 7.10.5-rev5.
CVE-2021-28093 is an improper access control vulnerability due to hash collisions.
Yes, CVE-2021-28093 can potentially allow unauthorized users to access converted images.