// For flags

CVE-2023-29043

 

Severity Score

6.1
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Presentations may contain references to images, which are user-controlled, and could include malicious script code that is being processed when editing a document. Script code embedded in malicious documents could be executed in the context of the user editing the document when performing certain actions, like copying content. The relevant attribute does now get encoded to avoid the possibility of executing script code. No publicly available exploits are known.

Las presentaciones pueden contener referencias a imágenes controladas por el usuario y podrían incluir código de script malicioso que se procesa al editar un documento. El código de script incorporado en documentos maliciosos podría ejecutarse en el contexto en el que el usuario edita el documento al realizar determinadas acciones, como copiar contenido. El atributo relevante ahora se codifica para evitar la posibilidad de ejecutar código de script. No se conocen exploits disponibles públicamente.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
Required
Scope
Changed
Confidentiality
Low
Integrity
Low
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2023-03-30 CVE Reserved
  • 2023-11-02 CVE Published
  • 2023-11-10 EPSS Updated
  • 2024-08-02 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
< 7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version " < 7.10.6"
-
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
-
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6069
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6073
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6080
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6085
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6093
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6102
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6112
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6121
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6133
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6138
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6141
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6146
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6147
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6148
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6150
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6156
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6161
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6166
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6173
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6176
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6178
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6189
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6194
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6199
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6204
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6205
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6209
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6210
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6214
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6215
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6216
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6218
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6219
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6220
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6227
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6230
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6233
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6235
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6236
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6239
Affected
Open-xchange
Search vendor "Open-xchange"
Open-xchange Appsuite
Search vendor "Open-xchange" for product "Open-xchange Appsuite"
7.10.6
Search vendor "Open-xchange" for product "Open-xchange Appsuite" and version "7.10.6"
patch_release_6241
Affected