CVE-2021-23927
12.01.2021, 22:15
OX App Suite through 7.10.4 allows SSRF via a URL with an @ character in an appsuite/api/oauth/proxy PUT request.
Vendor | Product | Version |
---|---|---|
open-xchange | open-xchange_appsuite | 𝑥 ≤ 7.10.4 |
𝑥
= Vulnerable software versions
OX App Suite through 7.10.4 allows SSRF via a URL with an @ character in an appsuite/api/oauth/proxy PUT request.
Vendor | Product | Version |
---|---|---|
open-xchange | open-xchange_appsuite | 𝑥 ≤ 7.10.4 |