ONLYOFFICE Document Server (ONLYOFFICE Docs) 8.0.0

CPE Details

ONLYOFFICE Document Server (ONLYOFFICE Docs) 8.0.0
8.0.0
2024-10-02
18h07 +00:00
2024-10-02
18h07 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:onlyoffice:document_server:8.0.0:*:*:*:*:*:*:*

Informations

Vendor

onlyoffice

Product

document_server

Version

8.0.0

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2023-50883 2024-09-08 22h00 +00:00 ONLYOFFICE Docs before 8.0.1 allows XSS because a macro is an immediately-invoked function expression (IIFE), and therefore a sandbox escape is possible by directly calling the constructor of the Function object. NOTE: this issue exists because of an incorrect fix for CVE-2021-43446.
6.1
Moyen