CVE-2021-20770
- EPSS 0.21%
- Veröffentlicht 18.08.2021 06:15:07
- Zuletzt bearbeitet 21.11.2024 05:47:09
Cross-site scripting vulnerability in Message of Cybozu Garoon 4.6.0 to 5.0.2 allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors.
CVE-2021-20771
- EPSS 0.35%
- Veröffentlicht 18.08.2021 06:15:07
- Zuletzt bearbeitet 21.11.2024 05:47:09
Cross-site scripting vulnerability in some functions of E-Mail of Cybozu Garoon 4.0.0 to 5.5.0 allows a remote attacker to inject an arbitrary script via unspecified vectors.
CVE-2021-20772
- EPSS 0.18%
- Veröffentlicht 18.08.2021 06:15:07
- Zuletzt bearbeitet 21.11.2024 05:47:09
Information disclosure vulnerability in Bulletin of Cybozu Garoon 4.10.0 to 5.5.0 allows a remote authenticated attacker to obtain the title of Bulletin without the viewing privilege.
CVE-2021-20773
- EPSS 0.18%
- Veröffentlicht 18.08.2021 06:15:07
- Zuletzt bearbeitet 21.11.2024 05:47:09
There is a vulnerability in Workflow of Cybozu Garoon 4.0.0 to 5.5.0, which may allow a remote authenticated attacker to delete the route information Workflow without the appropriate privilege.
CVE-2021-20774
- EPSS 0.21%
- Veröffentlicht 18.08.2021 06:15:07
- Zuletzt bearbeitet 21.11.2024 05:47:10
Cross-site scripting vulnerability in some functions of E-mail of Cybozu Garoon 4.0.0 to 5.5.0 allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors.
CVE-2021-20775
- EPSS 0.16%
- Veröffentlicht 18.08.2021 06:15:07
- Zuletzt bearbeitet 21.11.2024 05:47:10
Improper input validation vulnerability in Bulletin of Cybozu Garoon 4.10.0 to 5.5.0 allows a remote authenticated attacker to obtain the data of Comment and Space without the viewing privilege.
CVE-2021-20753
- EPSS 0.21%
- Veröffentlicht 18.08.2021 06:15:06
- Zuletzt bearbeitet 21.11.2024 05:47:07
Cross-site scripting vulnerability in Scheduler of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors.
CVE-2021-20754
- EPSS 0.16%
- Veröffentlicht 18.08.2021 06:15:06
- Zuletzt bearbeitet 21.11.2024 05:47:08
Improper input validation vulnerability in Workflow of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated attacker to alter the data of Workflow without the appropriate privilege.
CVE-2021-20755
- EPSS 0.16%
- Veröffentlicht 18.08.2021 06:15:06
- Zuletzt bearbeitet 21.11.2024 05:47:08
Viewing restrictions bypass vulnerability in Portal of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated attacker to obtain the data of Portal without the viewing privilege.
CVE-2021-20756
- EPSS 0.16%
- Veröffentlicht 18.08.2021 06:15:06
- Zuletzt bearbeitet 21.11.2024 05:47:08
Viewing restrictions bypass vulnerability in Address of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated attacker to obtain the data of Address without the viewing privilege.