Vulnerabilities
Vulnerable Software
Cybozu:  >> Garoon  >> 5.0.0  Security Vulnerabilities
Insertion of sensitive information into sent data issue exists in Cybozu Garoon 5.0.0 to 5.15.2. If this vulnerability is exploited, a user who can log in to the product may obtain information on the list of users.
CVSS Score
4.3
EPSS Score
0.001
Published
2024-06-11
Excessive platform resource consumption within a loop issue exists in Cybozu Garoon 5.0.0 to 5.15.2. If this vulnerability is exploited, processing a crafted mail may cause a denial-of-service (DoS) condition.
CVSS Score
6.5
EPSS Score
0.002
Published
2024-06-11
Incorrect authorization vulnerability in Cybozu Garoon 5.0.0 to 5.15.2 allows a remote authenticated attacker to delete the data of Shared To-Dos.
CVSS Score
4.3
EPSS Score
0.001
Published
2024-06-11
Denial-of-service (DoS) vulnerability in Message of Cybozu Garoon 4.10.0 to 5.9.2 allows a remote authenticated attacker to cause a denial of service condition.
CVSS Score
6.5
EPSS Score
0.004
Published
2023-05-23
Operation restriction bypass vulnerability in Message and Bulletin of Cybozu Garoon 4.6.0 to 5.9.2 allows a remote authenticated attacker to alter the data of Message and/or Bulletin.
CVSS Score
4.3
EPSS Score
0.001
Published
2023-05-23
Browse restriction bypass vulnerability in Cabinet of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated attacker to obtain the data of Cabinet.
CVSS Score
4.3
EPSS Score
0.001
Published
2022-07-11
Exposure of sensitive information to an unauthorized actor issue in multiple applications of Cybozu Garoon 4.0.0 to 5.9.1 allows a remote authenticated attacker to obtain the data without the viewing privilege.
CVSS Score
6.5
EPSS Score
0.003
Published
2022-07-11
Operation restriction bypass in multiple applications of Cybozu Garoon 4.0.0 to 5.9.1 allows a remote authenticated attacker to alter the file information and/or delete the files.
CVSS Score
8.1
EPSS Score
0.0
Published
2022-07-11
Browsing restriction bypass vulnerability in Bulletin of Cybozu Garoon 4.0.0 to 5.9.1 allows a remote authenticated attacker to obtain the data of Bulletin.
CVSS Score
4.3
EPSS Score
0.001
Published
2022-07-11
Operation restriction bypass vulnerability in Link of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated attacker to alter the data of Link.
CVSS Score
4.3
EPSS Score
0.001
Published
2022-07-04


Contact Us

Shodan ® - All rights reserved