CVE-2013-5935
Published Sep 25, 2013
Last updated 11 years ago
Overview
- Description
- The Hazelcast cluster API in Open-Xchange AppSuite 7.0.x before 7.0.2-rev15 and 7.2.x before 7.2.2-rev16 does not properly restrict the set of network interfaces that can receive API calls, which makes it easier for remote attackers to obtain access by sending network traffic from an unintended location, a different vulnerability than CVE-2013-5200.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 4.3
- Impact score
- 2.9
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:P/I:N/A:N
Weaknesses
- nvd@nist.gov
- CWE-200
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:open-xchange:open-xchange_appsuite:7.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "138461CD-9C27-40E5-B7A0-A37737B6E942" }, { "criteria": "cpe:2.3:a:open-xchange:open-xchange_appsuite:7.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "108BCEFD-3098-4919-9B0C-E80F6FA1C102" }, { "criteria": "cpe:2.3:a:open-xchange:open-xchange_appsuite:7.2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DDBB02DF-1022-4FE5-B5E1-198DC58F8C1B" }, { "criteria": "cpe:2.3:a:open-xchange:open-xchange_appsuite:7.2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2BF31219-8390-4676-A9C4-D625A016C71E" } ], "operator": "OR" } ] } ]