CVE-2023-29048
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
A component for parsing OXMF templates could be abused to execute arbitrary system commands that would be executed as the non-privileged runtime user. Users and attackers could run system commands with limited privilege to gain unauthorized access to confidential information and potentially violate integrity by modifying resources. The template engine has been reconfigured to deny execution of harmful commands on a system level. No publicly available exploits are known.
Se podría abusar de un componente para analizar plantillas OXMF para ejecutar comandos arbitrarios del sistema que se ejecutarían como usuario de tiempo de ejecución sin privilegios. Los usuarios y atacantes podrían ejecutar comandos del sistema con privilegios limitados para obtener acceso no autorizado a información confidencial y potencialmente violar la integridad al modificar recursos. El motor de plantillas se ha reconfigurado para denegar la ejecución de comandos dañinos a nivel del sistema. No se conocen exploits disponibles públicamente.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2023-03-30 CVE Reserved
- 2024-01-08 CVE Published
- 2024-08-02 CVE Updated
- 2025-01-14 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CAPEC
References (4)
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | < 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version " < 7.10.6" | - |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | - |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev01 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev02 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev03 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev04 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev05 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev06 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev07 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev08 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev09 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev10 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev11 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev12 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev13 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev14 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev15 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev16 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev17 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev18 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev19 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev20 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev21 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev22 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev23 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev24 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev25 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev26 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev27 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev28 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev29 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev30 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev31 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev32 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev33 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev34 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev35 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev36 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev37 |
Affected
| ||||||
Open-xchange Search vendor "Open-xchange" | Ox App Suite Search vendor "Open-xchange" for product "Ox App Suite" | 7.10.6 Search vendor "Open-xchange" for product "Ox App Suite" and version "7.10.6" | rev50 |
Affected
|