OX App Suite up to and including 8.2 allows XSS via a certain complex hierarchy that forces use of Show Entire Message for a huge HTML e-mail message.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
open-xchange open-xchange appsuite |
||
open-xchange open-xchange appsuite 7.10.5 |
||
open-xchange open-xchange appsuite 7.10.6 |
||
open-xchange open-xchange appsuite 8.2 |