4.3

CVE-2023-24604

OX App Suite before backend 7.10.6-rev37 does not check HTTP header lengths when downloading, e.g., potentially allowing a crafted iCal feed to provide an unlimited amount of header data.

Data is provided by the National Vulnerability Database (NVD)
Open-xchangeOx App Suite Version < 7.10.6
Open-xchangeOx App Suite Version7.10.6 Update-
Open-xchangeOx App Suite Version7.10.6 Updaterev01
Open-xchangeOx App Suite Version7.10.6 Updaterev02
Open-xchangeOx App Suite Version7.10.6 Updaterev03
Open-xchangeOx App Suite Version7.10.6 Updaterev04
Open-xchangeOx App Suite Version7.10.6 Updaterev05
Open-xchangeOx App Suite Version7.10.6 Updaterev06
Open-xchangeOx App Suite Version7.10.6 Updaterev07
Open-xchangeOx App Suite Version7.10.6 Updaterev08
Open-xchangeOx App Suite Version7.10.6 Updaterev09
Open-xchangeOx App Suite Version7.10.6 Updaterev10
Open-xchangeOx App Suite Version7.10.6 Updaterev11
Open-xchangeOx App Suite Version7.10.6 Updaterev12
Open-xchangeOx App Suite Version7.10.6 Updaterev13
Open-xchangeOx App Suite Version7.10.6 Updaterev14
Open-xchangeOx App Suite Version7.10.6 Updaterev15
Open-xchangeOx App Suite Version7.10.6 Updaterev16
Open-xchangeOx App Suite Version7.10.6 Updaterev17
Open-xchangeOx App Suite Version7.10.6 Updaterev18
Open-xchangeOx App Suite Version7.10.6 Updaterev19
Open-xchangeOx App Suite Version7.10.6 Updaterev20
Open-xchangeOx App Suite Version7.10.6 Updaterev21
Open-xchangeOx App Suite Version7.10.6 Updaterev22
Open-xchangeOx App Suite Version7.10.6 Updaterev23
Open-xchangeOx App Suite Version7.10.6 Updaterev24
Open-xchangeOx App Suite Version7.10.6 Updaterev25
Open-xchangeOx App Suite Version7.10.6 Updaterev26
Open-xchangeOx App Suite Version7.10.6 Updaterev27
Open-xchangeOx App Suite Version7.10.6 Updaterev28
Open-xchangeOx App Suite Version7.10.6 Updaterev29
Open-xchangeOx App Suite Version7.10.6 Updaterev30
Open-xchangeOx App Suite Version7.10.6 Updaterev31
Open-xchangeOx App Suite Version7.10.6 Updaterev32
Open-xchangeOx App Suite Version7.10.6 Updaterev33
Open-xchangeOx App Suite Version7.10.6 Updaterev34
Open-xchangeOx App Suite Version7.10.6 Updaterev35
Open-xchangeOx App Suite Version7.10.6 Updaterev36
Open-xchangeOx App Suite Version7.10.6 Updaterev37
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.05% 0.143
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 4.3 2.8 1.4
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
134c704f-9b21-4f2e-91b3-4a467353bcc0 4.3 2.8 1.4
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L