ONLYOFFICE Docs before 8.0.1 allows XSS because a macro is an immediately-invoked function expression (IIFE), and therefore a sandbox escape is possible by directly calling the constructor of the Function object. NOTE: this issue exists because of an incorrect fix for CVE-2021-43446.
Metrics
Affected Vendors & Products
References
History
Fri, 20 Sep 2024 15:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Onlyoffice document Server
|
|
CPEs | cpe:2.3:a:onlyoffice:document_server:*:*:*:*:*:*:*:* | |
Vendors & Products |
Onlyoffice document Server
|
Tue, 10 Sep 2024 15:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Onlyoffice
Onlyoffice docs |
|
Weaknesses | CWE-79 | |
CPEs | cpe:2.3:a:onlyoffice:docs:*:*:*:*:*:*:*:* | |
Vendors & Products |
Onlyoffice
Onlyoffice docs |
|
Metrics |
cvssV3_1
|
Mon, 09 Sep 2024 19:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | ONLYOFFICE Docs before 8.0.1 allows XSS because a macro is an immediately-invoked function expression (IIFE), and therefore a sandbox escape is possible by directly calling the constructor of the Function object. NOTE: this issue exists because of an incorrect fix for CVE-2021-43446. | |
References |
|
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2024-09-09T00:00:00
Updated: 2024-09-10T14:24:40.310Z
Reserved: 2023-12-15T00:00:00
Link: CVE-2023-50883
Vulnrichment
Updated: 2024-09-10T14:24:31.816Z
NVD
Status : Analyzed
Published: 2024-09-09T20:15:03.640
Modified: 2024-09-20T15:18:06.593
Link: CVE-2023-50883
Redhat
No data.