First published: Mon Nov 22 2021(Updated: )
OX App Suite 7.10.5 allows XSS via an OX Chat room name.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Open-xchange Ox App Suite | =7.10.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-33492 is a vulnerability in OX App Suite 7.10.5 that allows cross-site scripting (XSS) attacks via an OX Chat room name.
CVE-2021-33492 has a severity score of 6.1, which is considered medium.
CVE-2021-33492 affects OX App Suite version 7.10.5.
The CWE for CVE-2021-33492 is CWE-79, which is the code for Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting').
To fix CVE-2021-33492, it is recommended to update to a newer version of OX App Suite that includes a patch for the vulnerability.