Medium severity5.4NVD Advisory· Published Jan 12, 2021· Updated Jun 17, 2026
CVE-2020-24700
CVE-2020-24700
Description
OX App Suite through 7.10.3 allows SSRF because GET requests are sent to arbitrary domain names with an initial autoconfig. substring.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- OX App Suite/OX App Suitedescription
- Range: <=7.10.3
Patches
Vulnerability mechanics
References
4- packetstormsecurity.com/files/160853/OX-App-Suite-OX-Documents-7.10.x-XSS-SSRF.htmlnvdExploitThird Party AdvisoryVDB Entry
- seclists.org/fulldisclosure/2021/Jul/33nvdExploitMailing ListThird Party Advisory
- packetstormsecurity.com/files/163527/OX-App-Suite-OX-Guard-OX-Documents-SSRF-Cross-Site-Scripting.htmlnvdThird Party AdvisoryVDB Entry
- www.open-xchange.comnvdVendor Advisory
News mentions
0No linked articles in our index yet.