CVE Vulnerabilities

CVE-2014-9466

Published: Feb 17, 2015 | Modified: Oct 09, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

Open-Xchange (OX) AppSuite and Server before 7.4.2-rev42, 7.6.0 before 7.6.0-rev36, and 7.6.1 before 7.6.1-rev14 does not properly handle directory permissions, which allows remote authenticated users to read files via unspecified vectors, related to the folder identifier.

Affected Software

Name Vendor Start Version End Version
Open-xchange_appsuite Open-xchange 7.4.2 (including) 7.4.2 (including)
Open-xchange_appsuite Open-xchange 7.6.0 (including) 7.6.0 (including)
Open-xchange_appsuite Open-xchange 7.6.1 (including) 7.6.1 (including)

References