Security Advisory

CVE-2014-5238

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-01-14 16:00:29
Last updated 2024-08-06 11:41:47
Assigner mitre
State PUBLISHED

Description

XML external entity (XXE) vulnerability in Open-Xchange (OX) AppSuite before 7.4.2-rev11 and 7.6.x before 7.6.0-rev9 allows remote attackers to read arbitrary files and possibly other unspecified impact via a crafted OpenDocument Text document.