Back to search
CVE-2014-5237
Published: Dec 1, 2014
Modified: Aug 6, 2024
PUBLISHED
Description
Server-side request forgery (SSRF) vulnerability in the documentconverter component in Open-Xchange (OX) AppSuite before 7.4.2-rev10 and 7.6.x before 7.6.0-rev10 allows remote attackers to trigger requests to arbitrary servers and embed arbitrary images via a URL in an embedded image in a Text document, which is not properly handled by the image preview.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
20140915 Open-Xchange Security Advisory 2014-09-15
mailing-list
x_refsource_BUGTRAQ
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now