Vulnerabilities > Cybozu > Garoon
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-07-19 | CVE-2024-39457 | Cross-site Scripting vulnerability in Cybozu Garoon 6.0.0/6.0.1 Cybozu Garoon 6.0.0 to 6.0.1 contains a cross-site scripting vulnerability in PDF preview. | 5.4 |
2024-06-11 | CVE-2024-31398 | Unspecified vulnerability in Cybozu Garoon Insertion of sensitive information into sent data issue exists in Cybozu Garoon 5.0.0 to 5.15.2. | 4.3 |
2024-06-11 | CVE-2024-31399 | Unspecified vulnerability in Cybozu Garoon Excessive platform resource consumption within a loop issue exists in Cybozu Garoon 5.0.0 to 5.15.2. | 6.5 |
2024-06-11 | CVE-2024-31402 | Incorrect Authorization vulnerability in Cybozu Garoon Incorrect authorization vulnerability in Cybozu Garoon 5.0.0 to 5.15.2 allows a remote authenticated attacker to delete the data of Shared To-Dos. | 4.3 |
2023-05-23 | CVE-2023-26595 | Resource Exhaustion vulnerability in Cybozu Garoon Denial-of-service (DoS) vulnerability in Message of Cybozu Garoon 4.10.0 to 5.9.2 allows a remote authenticated attacker to cause a denial of service condition. | 6.5 |
2023-05-23 | CVE-2023-27304 | Unspecified vulnerability in Cybozu Garoon Operation restriction bypass vulnerability in Message and Bulletin of Cybozu Garoon 4.6.0 to 5.9.2 allows a remote authenticated attacker to alter the data of Message and/or Bulletin. | 4.3 |
2023-05-23 | CVE-2023-27384 | Unspecified vulnerability in Cybozu Garoon 5.15.0 Operation restriction bypass vulnerability in MultiReport of Cybozu Garoon 5.15.0 allows a remote authenticated attacker to alter the data of MultiReport. | 4.3 |
2022-07-11 | CVE-2022-29512 | Information Exposure vulnerability in Cybozu Garoon Exposure of sensitive information to an unauthorized actor issue in multiple applications of Cybozu Garoon 4.0.0 to 5.9.1 allows a remote authenticated attacker to obtain the data without the viewing privilege. | 6.5 |
2022-07-11 | CVE-2022-30602 | Unspecified vulnerability in Cybozu Garoon Operation restriction bypass in multiple applications of Cybozu Garoon 4.0.0 to 5.9.1 allows a remote authenticated attacker to alter the file information and/or delete the files. | 8.1 |
2022-07-11 | CVE-2022-30943 | Unspecified vulnerability in Cybozu Garoon Browsing restriction bypass vulnerability in Bulletin of Cybozu Garoon 4.0.0 to 5.9.1 allows a remote authenticated attacker to obtain the data of Bulletin. | 4.3 |