CVE-2022-37307
26.12.2022, 02:15
OX App Suite through 7.10.6 allows XSS via XHTML CDATA for a snippet, as demonstrated by the onerror attribute of an IMG element within an e-mail signature.
Vendor | Product | Version |
---|---|---|
open-xchange | open-xchange_appsuite | 𝑥 < 7.10.5 |
open-xchange | open-xchange_appsuite | 7.10.5 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_5961 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_5973 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_5976 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_5982 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_5989 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_5994 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6000 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6003 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6008 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6010 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6016 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6020 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6026 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6029 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6034 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6035 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6038 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6046 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6051 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6053 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6060 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6061 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6066 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6068 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6072 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6079 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6084 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6092 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6101 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6111 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6120 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6132 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6137 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6140 |
open-xchange | open-xchange_appsuite | 7.10.5:patch_release_6149 |
open-xchange | open-xchange_appsuite | 7.10.6 |
open-xchange | open-xchange_appsuite | 7.10.6:patch_release_6069 |
open-xchange | open-xchange_appsuite | 7.10.6:patch_release_6073 |
open-xchange | open-xchange_appsuite | 7.10.6:patch_release_6080 |
open-xchange | open-xchange_appsuite | 7.10.6:patch_release_6085 |
open-xchange | open-xchange_appsuite | 7.10.6:patch_release_6093 |
open-xchange | open-xchange_appsuite | 7.10.6:patch_release_6102 |
open-xchange | open-xchange_appsuite | 7.10.6:patch_release_6112 |
open-xchange | open-xchange_appsuite | 7.10.6:patch_release_6121 |
open-xchange | open-xchange_appsuite | 7.10.6:patch_release_6133 |
open-xchange | open-xchange_appsuite | 7.10.6:patch_release_6138 |
open-xchange | open-xchange_appsuite | 7.10.6:patch_release_6141 |
open-xchange | open-xchange_appsuite | 7.10.6:patch_release_6146 |
open-xchange | open-xchange_appsuite | 7.10.6:patch_release_6147 |
open-xchange | open-xchange_appsuite | 7.10.6:patch_release_6148 |
open-xchange | open-xchange_appsuite | 7.10.6:patch_release_6150 |
𝑥
= Vulnerable software versions