CVE-2022-26368
- EPSS 0.15%
- Veröffentlicht 04.07.2022 07:15:08
- Zuletzt bearbeitet 21.11.2024 06:53:50
Browse restriction bypass and operation restriction bypass vulnerability in Cabinet of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated attacker to alter and/or obtain the data of Cabinet.
CVE-2022-27627
- EPSS 0.33%
- Veröffentlicht 04.07.2022 07:15:08
- Zuletzt bearbeitet 21.11.2024 06:56:03
Cross-site scripting vulnerability in Organization's Information of Cybozu Garoon 4.10.2 to 5.5.1 allows a remote attacker to execute an arbitrary script on the logged-in user's web browser.
CVE-2022-27661
- EPSS 0.19%
- Veröffentlicht 04.07.2022 07:15:08
- Zuletzt bearbeitet 21.11.2024 06:56:07
Operation restriction bypass vulnerability in Workflow of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated attacker to alter the data of Workflow.
CVE-2022-27803
- EPSS 0.16%
- Veröffentlicht 04.07.2022 07:15:08
- Zuletzt bearbeitet 21.11.2024 06:56:13
Improper input validation vulnerability in Space of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated attacker to alter the data of Space.
CVE-2022-27807
- EPSS 0.16%
- Veröffentlicht 04.07.2022 07:15:08
- Zuletzt bearbeitet 21.11.2024 06:56:13
Improper input validation vulnerability in Link of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated attacker to disable to add Categories.
CVE-2022-28692
- EPSS 0.15%
- Veröffentlicht 04.07.2022 07:15:08
- Zuletzt bearbeitet 21.11.2024 06:57:45
Improper input validation vulnerability in Scheduler of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated attacker to alter the data of Scheduler.
CVE-2022-28713
- EPSS 0.35%
- Veröffentlicht 04.07.2022 07:15:08
- Zuletzt bearbeitet 21.11.2024 06:57:47
Improper authentication vulnerability in Scheduler of Cybozu Garoon 4.10.0 to 5.5.1 allows a remote attacker to obtain some data of Facility Information without logging in to the product.
CVE-2022-28718
- EPSS 0.19%
- Veröffentlicht 04.07.2022 07:15:08
- Zuletzt bearbeitet 21.11.2024 06:57:47
Operation restriction bypass vulnerability in Bulletin of Cybozu Garoon 4.0.0 to 5.5.1 allow a remote authenticated attacker to alter the data of Bulletin.
CVE-2022-29467
- EPSS 0.16%
- Veröffentlicht 04.07.2022 07:15:08
- Zuletzt bearbeitet 21.11.2024 06:59:08
Address information disclosure vulnerability in Cybozu Garoon 4.2.0 to 5.5.1 allows a remote authenticated attacker to obtain some data of Address.
CVE-2022-29471
- EPSS 0.15%
- Veröffentlicht 04.07.2022 07:15:08
- Zuletzt bearbeitet 21.11.2024 06:59:08
Browse restriction bypass vulnerability in Bulletin of Cybozu Garoon allows a remote authenticated attacker to obtain the data of Bulletin.