4.9
CVSSv2

CVE-2013-5035

Published: 05/09/2013 Updated: 08/10/2013
CVSS v2 Base Score: 4.9 | Impact Score: 4.9 | Exploitability Score: 6.8
VMScore: 436
Vector: AV:N/AC:M/Au:S/C:P/I:P/A:N

Vulnerability Summary

Multiple race conditions in HtmlCleaner prior to 2.6, as used in Open-Xchange AppSuite 7.2.2 before rev13 and other products, allow remote authenticated users to read the private e-mail of other persons in opportunistic circumstances by leveraging lack of thread safety and performing a rapid series of (1) mail-sending or (2) draft-saving operations.

Vulnerable Product Search on Vulmon Subscribe to Product

htmlcleaner project htmlcleaner

htmlcleaner project htmlcleaner 0.8

htmlcleaner project htmlcleaner 0.9

htmlcleaner project htmlcleaner 1.0

htmlcleaner project htmlcleaner 1.0.5

htmlcleaner project htmlcleaner 1.1

htmlcleaner project htmlcleaner 1.2

htmlcleaner project htmlcleaner 1.3

htmlcleaner project htmlcleaner 1.4

htmlcleaner project htmlcleaner 1.5

htmlcleaner project htmlcleaner 1.6

htmlcleaner project htmlcleaner 1.12

htmlcleaner project htmlcleaner 1.13

htmlcleaner project htmlcleaner 1.55

htmlcleaner project htmlcleaner 2.0

htmlcleaner project htmlcleaner 2.1

htmlcleaner project htmlcleaner 2.2

htmlcleaner project htmlcleaner 2.2.1

htmlcleaner project htmlcleaner 2.4

open-xchange open-xchange appsuite 7.2.2