CVE-2013-6242
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Cross-site scripting (XSS) vulnerability in the frontend in Open-Xchange (OX) AppSuite 6.22.3 before 6.22.3-rev5 and 6.22.4 before 6.22.4-rev12 allows remote attackers to inject arbitrary web script or HTML via the subject of an email. NOTE: the vulnerabilities related to the body of the email and the publication name were SPLIT from this CVE ID because they affect different sets of versions.
Una vulnerabilidad de tipo cross-site scripting (XSS) en el front-end en Open-Xchange (OX) AppSuite versiones 6.22.3 anteriores a la versión 6.22.3-rev5 y versiones 6.22.4 anteriores a la versión 6.22.4-rev12, permite a atacantes remotos inyectar script web o HTML arbitrario por medio del asunto de un correo electrónico. NOTA: las vulnerabilidades relacionadas con el cuerpo del correo electrónico y el nombre de la publicación fueron SEPARADAS de este ID de CVE porque afectan a diferentes conjuntos de versiones.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2013-10-22 CVE Reserved
- 2013-11-26 CVE Published
- 2024-08-06 CVE Updated
- 2024-12-26 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CAPEC
References (5)
URL | Tag | Source |
---|---|---|
http://packetstormsecurity.com/files/124185/Open-Xchange-frontend6-6.22.4-backend-7.4.0-Cross-Site-Scripting.html | Third Party Advisory | |
http://seclists.org/bugtraq/2013/Nov/127 | Mailing List | |
http://www.securitytracker.com/id/1029394 | Third Party Advisory | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/89250 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 6.22.3 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "6.22.3" | - |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 6.22.4 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "6.22.4" | - |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.2.2 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.2.2" | - |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.4.0 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.4.0" | - |
Affected
|