Cross-site scripting (XSS) vulnerability in the frontend in Open-Xchange (OX) AppSuite 7.4.1 before 7.4.1-rev10 and 7.4.2 before 7.4.2-rev8 allows remote attackers to inject arbitrary web script or HTML via the subject of an email, involving 'the aria "tags" for screenreaders at the top bar'.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2014-03-20T16:00:00

Updated: 2024-08-06T09:58:16.284Z

Reserved: 2014-02-19T00:00:00

Link: CVE-2014-2077

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2014-03-20T16:55:16.950

Modified: 2014-03-24T22:55:34.780

Link: CVE-2014-2077

cve-icon Redhat

No data.