CVE-2023-26455
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
RMI was not requiring authentication when calling ChronosRMIService:setEventOrganizer. Attackers with local or adjacent network access could abuse the RMI service to modify calendar items using RMI. RMI access is restricted to localhost by default. The interface has been updated to require authenticated requests. No publicly available exploits are known.
RMI no requería autenticación al llamar a ChronosRMIService:setEventOrganizer. Los atacantes con acceso a la red local o adyacente podrían abusar del servicio RMI para modificar elementos del calendario utilizando RMI. El acceso RMI está restringido a localhost de forma predeterminada. La interfaz se ha actualizada para requerir solicitudes autenticadas. No se conocen exploits disponibles públicamente.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2023-02-22 CVE Reserved
- 2023-11-02 CVE Published
- 2023-11-03 EPSS Updated
- 2024-08-02 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-287: Improper Authentication
CAPEC
References (2)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | < 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version " < 7.10.6" | - |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | - |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6069 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6073 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6080 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6085 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6093 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6102 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6112 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6121 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6133 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6138 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6141 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6146 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6147 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6148 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6150 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6156 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6161 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6166 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6173 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6176 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6178 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6189 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6194 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6199 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6204 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6205 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6209 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6210 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6214 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6215 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6216 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6218 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6219 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6220 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6227 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6230 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6233 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6235 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6236 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6239 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Open-xchange Appsuite Search vendor "Open-xchange" for product "Open-xchange Appsuite" | 7.10.6 Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6" | patch_release_6241 |
Affected
|