Medium severity6.1NVD Advisory· Published Oct 25, 2022· Updated Jun 17, 2026
CVE-2022-31468
CVE-2022-31468
Description
OX App Suite through 8.2 allows XSS via an attachment or OX Drive content when a client uses the len or off parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:open-xchange:ox_app_suite:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:open-xchange:ox_app_suite:*:*:*:*:*:*:*:*range: <=8.2
- (no CPE)range: <=8.2
- OX App Suite/OX App Suitedescription
Patches
Vulnerability mechanics
References
1- packetstormsecurity.com/files/168242/OX-App-Suite-Cross-Site-Scripting-Command-Injection.htmlnvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.