First published: Wed Jul 27 2022(Updated: )
OX App Suite through 7.10.6 allows OS Command Injection via a serialized Java class to the Documentconverter API.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Open-xchange Ox App Suite | <=7.10.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-24405 is a vulnerability that allows OS Command Injection via a serialized Java class to the Documentconverter API in OX App Suite through version 7.10.6.
CVE-2022-24405 has a severity rating of 9.8 on a scale of 1 to 10, with 10 being the most severe.
OX App Suite through version 7.10.6 is affected by CVE-2022-24405.
To fix CVE-2022-24405, update OX App Suite to a version beyond 7.10.6.
You can find more information about CVE-2022-24405 on the Open-Xchange website and the Seclists.org disclosure.