4.9
CVE-2014-0817
- EPSS 0.96%
- Veröffentlicht 27.02.2014 01:55:03
- Zuletzt bearbeitet 29.04.2026 01:13:23
- Quelle vultures@jpcert.or.jp
- CVE-Watchlists
- Unerledigt
Cybozu Garoon 2.x through 2.5.4 and 3.x through 3.7 SP3 does not properly manage sessions, which allows remote authenticated users to impersonate arbitrary users via unspecified vectors.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.96% | 0.569 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.9 | 6.8 | 4.9 |
AV:N/AC:M/Au:S/C:P/I:P/A:N
|
http://cs.cybozu.co.jp/information/gr20140225up03.php
http://jvn.jp/en/jp/JVN24035499/index.html
http://jvndb.jvn.jp/jvndb/JVNDB-2014-000021
https://support.cybozu.com/ja-jp/article/7992