OX App Suite through 7.10.6 allows SSRF because multipart/form-data boundaries are predictable, and this can lead to injection into internal Documentconverter API calls.
The product uses insufficiently random numbers or values in a security context that depends on unpredictable numbers.
Link | Tags |
---|---|
https://open-xchange.com | product vendor advisory |
https://seclists.org/fulldisclosure/2022/Jul/11 | mailing list exploit third party advisory |