CVE-2013-5936: Open-Xchange Appsuite

Medium severity, CVSS 4.3. EPSS: 1.1% chance of exploitation in the next 30 days.

The Hazelcast cluster API in Open-Xchange AppSuite 7.0.x before 7.0.2-rev15 and 7.2.x before 7.2.2-rev16 allows remote attackers to obtain sensitive information about (1) runtime activity, (2) network configuration, (3) user sessions, (4) the memcache interface, and (5) the REST interface via API calls such as a hazelcast/rest/cluster/ call, a different vulnerability than CVE-2013-5200.

Affected products

  • Open-Xchange Open-Xchange Appsuite: version 7.0.1 only; version 7.0.2 only; version 7.2.0 only; version 7.2.1 only

Published 2013-09-25. Last modified 2026-06-16.