Description
Cybozu Mailwise 5.0.4 and 5.0.5 allows remote authenticated users to obtain sensitive e-mail content intended for different persons in opportunistic circumstances by reading Subject header lines within the user's own mailbox.
References (4)
Core 4
Core References
Third Party Advisory third-party-advisory
x_refsource_jvndb
http://jvndb.jvn.jp/jvndb/JVNDB-2013-000077
Vendor Advisory x_refsource_confirm
http://cs.cybozu.co.jp/information/20130812up02.php
Third Party Advisory x_refsource_confirm
http://jvn.jp/en/jp/JVN21103639/374951/index.html
Third Party Advisory third-party-advisory
x_refsource_jvn
http://jvn.jp/en/jp/JVN21103639/index.html
Scores
EPSS
0.0022
EPSS Percentile
45.1%
Details
CWE
CWE-200
Status
published
Products (2)
cybozu/mailwise
5.0.4
cybozu/mailwise
5.0.5
Published
Aug 16, 2013
Tracked Since
Feb 18, 2026