Vulnerabilities > Cybozu > Garoon > Low

DATE CVE VULNERABILITY TITLE RISK
2021-08-18 CVE-2021-20761 Improper Input Validation vulnerability in Cybozu Garoon
Improper input validation vulnerability in E-mail of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote attacker with an administrative privilege to alter the data of E-mail without the appropriate privilege.
network
low complexity
cybozu CWE-20
2.7
2018-04-16 CVE-2018-0532 Cross-site Scripting vulnerability in Cybozu Garoon
Cybozu Garoon 3.0.0 to 4.2.6 allows remote authenticated attackers to bypass access restriction to alter setting data of the Standard database via unspecified vectors.
network
low complexity
cybozu CWE-79
2.7