OX App Suite Processing Time Monitoring and Update Deployment
CVE-2023-41706

6.5MEDIUM

Key Information:

Vendor
CVE Published:
12 February 2024

What is CVE-2023-41706?

A vulnerability exists in the OX App Suite where the processing time of user-defined drive search expressions is not effectively limited, potentially leading to excessive resource consumption. While the system is designed to monitor and terminate requests when a resource threshold is surpassed, the lack of restrictions on processing time may still compromise the availability of the application. Implementing the recommended updates and patches is crucial for mitigating this vulnerability and ensuring optimal operational performance.

Affected Version(s)

OX App Suite 0 <= 7.10.6-rev55

OX App Suite 0 <= 7.6.3-rev71

OX App Suite 0 <= 8.19

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2023-41706 : OX App Suite Processing Time Monitoring and Update Deployment