Vulnerability Details CVE-2024-31404
Insertion of sensitive information into sent data issue exists in Cybozu Garoon 5.5.0 to 6.0.0, which may allow a user who can log in to the product to view the data of Scheduler.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 35.5%
CVSS Severity
CVSS v3 Score 4.3
Products affected by CVE-2024-31404
-
cpe:2.3:a:cybozu:garoon:5.15.0
-
cpe:2.3:a:cybozu:garoon:5.15.1
-
cpe:2.3:a:cybozu:garoon:5.15.2
-
cpe:2.3:a:cybozu:garoon:5.5.0
-
cpe:2.3:a:cybozu:garoon:5.5.1
-
cpe:2.3:a:cybozu:garoon:5.9.0
-
cpe:2.3:a:cybozu:garoon:5.9.1
-
cpe:2.3:a:cybozu:garoon:5.9.2
-
cpe:2.3:a:cybozu:garoon:6.0.0