PT-2021-22092 · Open Xchange · Ox App Suite

Published

2021-11-22

·

Updated

2022-07-12

·

CVE-2021-38378

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions OX App Suite version 7.10.5
Description The issue allows information exposure due to a caching mechanism that can cause a Modified By response to show a person's name.
Recommendations For OX App Suite version 7.10.5, consider disabling the caching mechanism for the Modified By response until a patch is available.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2021-38378

Affected Products

Ox App Suite