CVE-2021-33488: Input Validation
chat in OX App Suite 7.10.5 has Improper Input Validation. A user can be redirected to a rogue OX Chat server via a development-related hook.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-33488?
The severity of CVE-2021-33488 is medium.
How does CVE-2021-33488 affect OX App Suite?
CVE-2021-33488 affects OX App Suite version 7.10.5.
What is the vulnerability description of CVE-2021-33488?
CVE-2021-33488 is an Improper Input Validation vulnerability in the chat feature of OX App Suite 7.10.5.
How can an attacker exploit CVE-2021-33488?
An attacker can exploit CVE-2021-33488 by redirecting a user to a rogue OX Chat server using a development-related hook.
Are there any references available for CVE-2021-33488?
Yes, you can find references for CVE-2021-33488 at the following URLs: [http://packetstormsecurity.com/files/165028/OX-App-Suite-Ox-Documents-7.10.x-XSS-Code-Injection-Traversal.html](http://packetstormsecurity.com/files/165028/OX-App-Suite-Ox-Documents-7.10.x-XSS-Code-Injection-Traversal.html), [http://seclists.org/fulldisclosure/2021/Nov/42](http://seclists.org/fulldisclosure/2021/Nov/42), [https://open-xchange.com](https://open-xchange.com)