CVE-2021-23929
12.01.2021, 22:15
OX App Suite through 7.10.4 allows XSS via a crafted Content-Disposition header in an uploaded HTML document to an ajax/share/<share-token>?delivery=view URI.
Vendor | Product | Version |
---|---|---|
open-xchange | open-xchange_appsuite | 𝑥 ≤ 7.10.3 |
𝑥
= Vulnerable software versions