Vulnerability Details CVE-2016-7803
SQL injection vulnerability in the Cybozu Garoon 3.0.0 to 4.2.2 allows remote authenticated attackers to execute arbitrary SQL commands via "MultiReport" function.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.012
EPSS Ranking 77.9%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 6.5
Products affected by CVE-2016-7803
-
cpe:2.3:a:cybozu:garoon:3.0.0
-
cpe:2.3:a:cybozu:garoon:3.0.1
-
cpe:2.3:a:cybozu:garoon:3.0.2
-
cpe:2.3:a:cybozu:garoon:3.0.3
-
cpe:2.3:a:cybozu:garoon:3.1.0
-
cpe:2.3:a:cybozu:garoon:3.1.1
-
cpe:2.3:a:cybozu:garoon:3.1.2
-
cpe:2.3:a:cybozu:garoon:3.1.3
-
cpe:2.3:a:cybozu:garoon:3.5.0
-
cpe:2.3:a:cybozu:garoon:3.5.1
-
cpe:2.3:a:cybozu:garoon:3.5.2
-
cpe:2.3:a:cybozu:garoon:3.5.3
-
cpe:2.3:a:cybozu:garoon:3.5.4
-
cpe:2.3:a:cybozu:garoon:3.5.5
-
cpe:2.3:a:cybozu:garoon:3.7.0
-
cpe:2.3:a:cybozu:garoon:3.7.1
-
cpe:2.3:a:cybozu:garoon:3.7.2
-
cpe:2.3:a:cybozu:garoon:3.7.3
-
cpe:2.3:a:cybozu:garoon:3.7.4
-
cpe:2.3:a:cybozu:garoon:3.7.5
-
cpe:2.3:a:cybozu:garoon:4.0.0
-
cpe:2.3:a:cybozu:garoon:4.0.1
-
cpe:2.3:a:cybozu:garoon:4.0.2
-
cpe:2.3:a:cybozu:garoon:4.0.3
-
cpe:2.3:a:cybozu:garoon:4.2.0
-
cpe:2.3:a:cybozu:garoon:4.2.1
-
cpe:2.3:a:cybozu:garoon:4.2.2