Multiple cross-site scripting (XSS) vulnerabilities in Open-Xchange (OX) AppSuite 7.4.0 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) an HTML email with crafted CSS code containing wildcards or (2) office documents containing "crafted hyperlinks with script URL handlers."
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2014-01-09T00:00:00

Updated: 2018-10-09T18:57:01

Reserved: 2013-12-06T00:00:00


Link: CVE-2013-6997

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2014-01-09T00:55:03.097

Modified: 2018-10-09T19:35:02.250


Link: CVE-2013-6997

JSON object: View

cve-icon Redhat Information

No data.

CWE