Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pxp7-8mq7-mj6j

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Multiple race conditions in HtmlCleaner before 2.6, as used in Open-Xchange AppSuite 7.2.2 before rev13 and other products, allow remote authenticated users to read the private e-mail of other persons in opportunistic circumstances by leveraging lack of thread safety and performing a rapid series of (1) mail-sending or (2) draft-saving operations.

Multiple race conditions in HtmlCleaner before 2.6, as used in Open-Xchange AppSuite 7.2.2 before rev13 and other products, allow remote authenticated users to read the private e-mail of other persons in opportunistic circumstances by leveraging lack of thread safety and performing a rapid series of (1) mail-sending or (2) draft-saving operations.

EPSS

Процентиль: 33%
0.00132
Низкий

Дефекты

CWE-362

Связанные уязвимости

nvd
больше 12 лет назад

Multiple race conditions in HtmlCleaner before 2.6, as used in Open-Xchange AppSuite 7.2.2 before rev13 and other products, allow remote authenticated users to read the private e-mail of other persons in opportunistic circumstances by leveraging lack of thread safety and performing a rapid series of (1) mail-sending or (2) draft-saving operations.

EPSS

Процентиль: 33%
0.00132
Низкий

Дефекты

CWE-362