4.9
CVSSv2

CVE-2013-5035

Published: 05/09/2013 Updated: 08/10/2013
CVSS v2 Base Score: 4.9 | Impact Score: 4.9 | Exploitability Score: 6.8
VMScore: 436
Vector: AV:N/AC:M/Au:S/C:P/I:P/A:N

Vulnerability Summary

Multiple race conditions in HtmlCleaner prior to 2.6, as used in Open-Xchange AppSuite 7.2.2 before rev13 and other products, allow remote authenticated users to read the private e-mail of other persons in opportunistic circumstances by leveraging lack of thread safety and performing a rapid series of (1) mail-sending or (2) draft-saving operations.

Vulnerable Product Search on Vulmon Subscribe to Product

htmlcleaner_project htmlcleaner

htmlcleaner_project htmlcleaner 2.4

htmlcleaner_project htmlcleaner 2.2.1

htmlcleaner_project htmlcleaner 2.2

htmlcleaner_project htmlcleaner 1.0

htmlcleaner_project htmlcleaner 0.9

htmlcleaner_project htmlcleaner 0.8

htmlcleaner_project htmlcleaner 2.1

htmlcleaner_project htmlcleaner 1.6

htmlcleaner_project htmlcleaner 1.12

htmlcleaner_project htmlcleaner 1.0.5

htmlcleaner_project htmlcleaner 1.55

htmlcleaner_project htmlcleaner 1.4

htmlcleaner_project htmlcleaner 1.3

htmlcleaner_project htmlcleaner 1.2

htmlcleaner_project htmlcleaner 2.0

htmlcleaner_project htmlcleaner 1.5

htmlcleaner_project htmlcleaner 1.13

htmlcleaner_project htmlcleaner 1.1

open-xchange open-xchange_appsuite 7.2.2