CVE-2022-29484
- EPSS 0.4%
- Veröffentlicht 04.07.2022 07:15:08
- Zuletzt bearbeitet 21.11.2024 06:59:10
Operation restriction bypass vulnerability in Space of Cybozu Garoon 4.0.0 to 5.9.0 allows a remote authenticated attacker to delete the data of Space.
CVE-2022-29513
- EPSS 0.18%
- Veröffentlicht 04.07.2022 07:15:08
- Zuletzt bearbeitet 21.11.2024 06:59:14
Cross-site scripting vulnerability in Scheduler of Cybozu Garoon 4.10.0 to 5.5.1 allows a remote authenticated attacker with an administrative privilege to execute an arbitrary script.
CVE-2022-29892
- EPSS 0.36%
- Veröffentlicht 04.07.2022 07:15:08
- Zuletzt bearbeitet 21.11.2024 06:59:55
Improper input validation vulnerability in Space of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated attacker to repeatedly display errors in certain functions and cause a denial-of-service (DoS).
CVE-2022-26051
- EPSS 0.19%
- Veröffentlicht 04.07.2022 07:15:07
- Zuletzt bearbeitet 21.11.2024 06:53:21
Operation restriction bypass vulnerability in Portal of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated attacker to alter the data of Portal.
CVE-2021-20764
- EPSS 0.27%
- Veröffentlicht 18.08.2021 06:15:07
- Zuletzt bearbeitet 21.11.2024 05:47:09
Improper input validation vulnerability in Attaching Files of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote attacker to alter the data of Attaching Files.
CVE-2021-20765
- EPSS 0.35%
- Veröffentlicht 18.08.2021 06:15:07
- Zuletzt bearbeitet 21.11.2024 05:47:09
Cross-site scripting vulnerability in Bulletin of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote attacker to inject an arbitrary script via unspecified vectors.
CVE-2021-20766
- EPSS 0.35%
- Veröffentlicht 18.08.2021 06:15:07
- Zuletzt bearbeitet 21.11.2024 05:47:09
Cross-site scripting vulnerability in Message of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote attacker to inject an arbitrary script via unspecified vectors.
CVE-2021-20767
- EPSS 0.21%
- Veröffentlicht 18.08.2021 06:15:07
- Zuletzt bearbeitet 21.11.2024 05:47:09
Cross-site scripting vulnerability in Full Text Search of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors.
CVE-2021-20768
- EPSS 0.19%
- Veröffentlicht 18.08.2021 06:15:07
- Zuletzt bearbeitet 21.11.2024 05:47:09
Operational restrictions bypass vulnerability in Scheduler and MultiReport of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated attacker to delete the data of Scheduler and MultiReport without the appropriate privilege.
CVE-2021-20769
- EPSS 0.21%
- Veröffentlicht 18.08.2021 06:15:07
- Zuletzt bearbeitet 21.11.2024 05:47:09
Cross-site scripting vulnerability in Bulletin of Cybozu Garoon 4.6.0 to 5.0.2 allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors.