CVE-2021-33494: XSS
OX App Suite 7.10.5 allows XSS via an OX Chat room title during typing rendering.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-33494?
CVE-2021-33494 is a vulnerability in OX App Suite 7.10.5 that allows XSS (Cross-Site Scripting) attacks via an OX Chat room title during typing rendering.
What is the severity of CVE-2021-33494?
The severity of CVE-2021-33494 is medium with a CVSS score of 6.1.
How does CVE-2021-33494 affect OX App Suite?
CVE-2021-33494 affects OX App Suite version 7.10.5.
How can an XSS attack be performed through CVE-2021-33494?
An XSS attack can be performed through CVE-2021-33494 by injecting malicious code in the OX Chat room title during typing rendering.
Are there any references related to CVE-2021-33494?
Yes, you can find references related to CVE-2021-33494 at the following URLs: http://packetstormsecurity.com/files/165028/OX-App-Suite-Ox-Documents-7.10.x-XSS-Code-Injection-Traversal.html, https://open-xchange.com, and https://seclists.org/fulldisclosure/2021/Nov/42.