5.8
CVE-2010-2029
- EPSS 1.37%
- Veröffentlicht 24.05.2010 19:30:01
- Zuletzt bearbeitet 16.06.2026 23:19:50
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Cybozu Office 7 Ktai and Dotsales do not properly restrict access to the login page, which allows remote attackers to bypass authentication and obtain or modify sensitive information by using the unique ID of the user's cell phone.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Cybozu ≫ Cybozu Office Version7 Update- Editionktai
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.37% | 0.684 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5.8 | 8.6 | 4.9 |
AV:N/AC:M/Au:N/C:P/I:P/A:N
|
http://cybozu.co.jp/products/dl/notice/detail/0034.html
http://jvn.jp/en/jp/JVN87730223/index.html
http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-000016.html
http://secunia.com/advisories/39508
http://www.ipa.go.jp/security/english/vuln/201004_cybozu_en.html
http://www.osvdb.org/63933
https://exchange.xforce.ibmcloud.com/vulnerabilities/57976