Cybozu

Garoon

198 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.21%
  • Veröffentlicht 18.08.2021 06:15:07
  • Zuletzt bearbeitet 21.11.2024 05:47:09

Cross-site scripting vulnerability in Message of Cybozu Garoon 4.6.0 to 5.0.2 allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors.

  • EPSS 0.35%
  • Veröffentlicht 18.08.2021 06:15:07
  • Zuletzt bearbeitet 21.11.2024 05:47:09

Cross-site scripting vulnerability in some functions of E-Mail of Cybozu Garoon 4.0.0 to 5.5.0 allows a remote attacker to inject an arbitrary script via unspecified vectors.

  • EPSS 0.18%
  • Veröffentlicht 18.08.2021 06:15:07
  • Zuletzt bearbeitet 21.11.2024 05:47:09

Information disclosure vulnerability in Bulletin of Cybozu Garoon 4.10.0 to 5.5.0 allows a remote authenticated attacker to obtain the title of Bulletin without the viewing privilege.

  • EPSS 0.18%
  • Veröffentlicht 18.08.2021 06:15:07
  • Zuletzt bearbeitet 21.11.2024 05:47:09

There is a vulnerability in Workflow of Cybozu Garoon 4.0.0 to 5.5.0, which may allow a remote authenticated attacker to delete the route information Workflow without the appropriate privilege.

  • EPSS 0.21%
  • Veröffentlicht 18.08.2021 06:15:07
  • Zuletzt bearbeitet 21.11.2024 05:47:10

Cross-site scripting vulnerability in some functions of E-mail of Cybozu Garoon 4.0.0 to 5.5.0 allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors.

  • EPSS 0.16%
  • Veröffentlicht 18.08.2021 06:15:07
  • Zuletzt bearbeitet 21.11.2024 05:47:10

Improper input validation vulnerability in Bulletin of Cybozu Garoon 4.10.0 to 5.5.0 allows a remote authenticated attacker to obtain the data of Comment and Space without the viewing privilege.

  • EPSS 0.21%
  • Veröffentlicht 18.08.2021 06:15:06
  • Zuletzt bearbeitet 21.11.2024 05:47:07

Cross-site scripting vulnerability in Scheduler of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors.

  • EPSS 0.16%
  • Veröffentlicht 18.08.2021 06:15:06
  • Zuletzt bearbeitet 21.11.2024 05:47:08

Improper input validation vulnerability in Workflow of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated attacker to alter the data of Workflow without the appropriate privilege.

  • EPSS 0.16%
  • Veröffentlicht 18.08.2021 06:15:06
  • Zuletzt bearbeitet 21.11.2024 05:47:08

Viewing restrictions bypass vulnerability in Portal of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated attacker to obtain the data of Portal without the viewing privilege.

  • EPSS 0.16%
  • Veröffentlicht 18.08.2021 06:15:06
  • Zuletzt bearbeitet 21.11.2024 05:47:08

Viewing restrictions bypass vulnerability in Address of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated attacker to obtain the data of Address without the viewing privilege.