OX App Suite up to and including 7.10.5 allows Directory Traversal via ../ in an OOXML or ODF ZIP archive, because of the mishandling of relative paths in mail addresses in conjunction with auto-configuration DNS records.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
open-xchange ox app suite |