CVE-2021-38376

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
22/11/2021
Last modified:
12/07/2022

Description

OX App Suite through 7.10.5 has Incorrect Access Control for retrieval of session information via the rampup action of the login API call.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:open-xchange:ox_app_suite:*:*:*:*:*:*:*:* 7.10.5 (including)