CVE-2022-23099: XSS
Published Jul 27, 2022
·Updated
OX App Suite through 7.10.6 allows XSS by forcing block-wise read.
Affected Software
1 affected component
Open-Xchange App Suite<=7.10.6
Event History
Jul 27, 2022
CVE Published
via MITRE·01:25 PM
Data Sourced
via MITRE·01:25 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-23099?
CVE-2022-23099 has a medium severity due to its potential for exploitation via XSS attacks.
2
How do I fix CVE-2022-23099?
To fix CVE-2022-23099, upgrade your OX App Suite to version 7.10.7 or later.
3
What systems are affected by CVE-2022-23099?
CVE-2022-23099 affects OX App Suite versions up to and including 7.10.6.
4
What type of vulnerability is CVE-2022-23099?
CVE-2022-23099 is classified as a cross-site scripting (XSS) vulnerability.
5
Can CVE-2022-23099 be exploited remotely?
Yes, CVE-2022-23099 can be exploited remotely if the attacker can send crafted requests to the vulnerable application.