TROYANOSYVIRUS
Back to CVEs

CVE-2013-5035

N/A

Description

Multiple race conditions in HtmlCleaner before 2.6, as used in Open-Xchange AppSuite 7.2.2 before rev13 and other products, allow remote authenticated users to read the private e-mail of other persons in opportunistic circumstances by leveraging lack of thread safety and performing a rapid series of (1) mail-sending or (2) draft-saving operations.

CVE Details

CVSS v3.1 ScoreN/A
Published9/5/2013
Last Modified4/11/2025
Sourcenvd
Honeypot Sightings0

Affected Products

htmlcleaner_project:htmlcleaneropen-xchange:open-xchange_appsuite

Weaknesses (CWE)

CWE-362

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.