CVE-2024-39817
- EPSS 0.54%
- Veröffentlicht 06.08.2024 05:15:41
- Zuletzt bearbeitet 18.03.2025 21:15:28
Insertion of sensitive information into sent data issue exists in Cybozu Office 10.0.0 to 10.8.6, which may allow a user who can login to the product to view data that the user does not have access by conducting 'search' under certain conditions in C...
CVE-2022-33311
- EPSS 0.18%
- Veröffentlicht 18.08.2022 08:15:08
- Zuletzt bearbeitet 21.11.2024 07:08:09
Browse restriction bypass vulnerability in Address Book of Cybozu Office 10.0.0 to 10.8.5 allows a remote authenticated attacker to obtain the data of Address Book via unspecified vectors.
CVE-2022-29891
- EPSS 0.18%
- Veröffentlicht 18.08.2022 08:15:07
- Zuletzt bearbeitet 21.11.2024 06:59:55
Browse restriction bypass vulnerability in Custom Ap of Cybozu Office 10.0.0 to 10.8.5 allows a remote authenticated attacker to obtain the data of Custom App via unspecified vectors.
CVE-2022-25986
- EPSS 0.18%
- Veröffentlicht 18.08.2022 08:15:07
- Zuletzt bearbeitet 21.11.2024 06:53:16
Browse restriction bypass vulnerability in Scheduler of Cybozu Office 10.0.0 to 10.8.5 allows a remote authenticated attacker to obtain the data of Scheduler.
CVE-2022-28715
- EPSS 0.19%
- Veröffentlicht 18.08.2022 08:15:07
- Zuletzt bearbeitet 21.11.2024 06:57:47
Cross-site scripting vulnerability in the specific parameters of Cybozu Office 10.0.0 to 10.8.5 allows a remote attacker to inject an arbitrary script via unspecified vectors.
CVE-2022-29487
- EPSS 0.19%
- Veröffentlicht 18.08.2022 08:15:07
- Zuletzt bearbeitet 21.11.2024 06:59:10
Cross-site scripting vulnerability in Cybozu Office 10.0.0 to 10.8.5 allows a remote attacker to inject an arbitrary script via unspecified vectors.
CVE-2022-30604
- EPSS 0.19%
- Veröffentlicht 18.08.2022 08:15:07
- Zuletzt bearbeitet 21.11.2024 07:03:00
Cross-site scripting vulnerability in the specific parameters of Cybozu Office 10.0.0 to 10.8.5 allows a remote attacker to inject an arbitrary script via unspecified vectors.
CVE-2022-30693
- EPSS 0.16%
- Veröffentlicht 18.08.2022 08:15:07
- Zuletzt bearbeitet 21.11.2024 07:03:10
Information disclosure vulnerability in the system configuration of Cybozu Office 10.0.0 to 10.8.5 allows a remote attacker to obtain the data of the product via unspecified vectors.
CVE-2022-32283
- EPSS 0.18%
- Veröffentlicht 18.08.2022 08:15:07
- Zuletzt bearbeitet 21.11.2024 07:06:06
Browse restriction bypass vulnerability in Cabinet of Cybozu Office 10.0.0 to 10.8.5 allows a remote authenticated attacker to obtain the data of Cabinet via unspecified vectors.
CVE-2022-32453
- EPSS 0.18%
- Veröffentlicht 18.08.2022 08:15:07
- Zuletzt bearbeitet 21.11.2024 07:06:22
HTTP header injection vulnerability in Cybozu Office 10.0.0 to 10.8.5 may allow a remote attacker to obtain and/or alter the data of the product via unspecified vectors.