Vulnerabilities > Cybozu > Office

DATE CVE VULNERABILITY TITLE RISK
2021-03-18 CVE-2021-20628 Cross-site Scripting vulnerability in Cybozu Office
Cross-site scripting vulnerability in Address Book of Cybozu Office 10.0.0 to 10.8.4 allows remote attackers to inject an arbitrary script via unspecified vectors.
network
cybozu CWE-79
4.3
2021-03-18 CVE-2021-20627 Cross-site Scripting vulnerability in Cybozu Office
Cross-site scripting vulnerability in Address Book of Cybozu Office 10.0.0 to 10.8.4 allows remote attackers to inject an arbitrary script via unspecified vectors.
network
cybozu CWE-79
4.3
2021-03-18 CVE-2021-20626 Unspecified vulnerability in Cybozu Office
Improper access control vulnerability in Workflow of Cybozu Office 10.0.0 to 10.8.4 allows authenticated attackers to bypass access restriction and alter the data of Workflow via unspecified vectors.
network
low complexity
cybozu
4.0
2021-03-18 CVE-2021-20625 Unspecified vulnerability in Cybozu Office
Improper access control vulnerability in Bulletin Board of Cybozu Office 10.0.0 to 10.8.4 allows an authenticated attacker to bypass access restriction and alter the data of Bulletin Board via unspecified vectors.
network
low complexity
cybozu
4.0
2021-03-18 CVE-2021-20624 Unspecified vulnerability in Cybozu Office
Improper access control vulnerability in Scheduler of Cybozu Office 10.0.0 to 10.8.4 allows an authenticated attacker to bypass access restriction and alter the data of Scheduler via unspecified vectors.
network
low complexity
cybozu
4.0
2019-12-26 CVE-2019-6023 Unspecified vulnerability in Cybozu Office
Cybozu Office 10.0.0 to 10.8.3 allows remote authenticated attackers to bypass access restriction which may result in obtaining data without access privileges via the application 'Address'.
network
low complexity
cybozu
4.0
2019-12-26 CVE-2019-6022 Path Traversal vulnerability in Cybozu Office
Directory traversal vulnerability in Cybozu Office 10.0.0 to 10.8.3 allows remote authenticated attackers to alter arbitrary files via the 'Customapp' function.
network
low complexity
cybozu CWE-22
4.0
2019-01-09 CVE-2018-0704 Path Traversal vulnerability in Cybozu Office
Directory traversal vulnerability in Cybozu Office 10.0.0 to 10.8.1 allows remote attackers to delete arbitrary files via Keitai Screen.
network
low complexity
cybozu CWE-22
6.4
2019-01-09 CVE-2018-0703 Path Traversal vulnerability in Cybozu Office
Directory traversal vulnerability in Cybozu Office 10.0.0 to 10.8.1 allows remote attackers to delete arbitrary files via HTTP requests.
network
low complexity
cybozu CWE-22
6.4
2018-06-26 CVE-2018-0567 Unspecified vulnerability in Cybozu Office
Cybozu Office 10.0.0 to 10.8.0 allows authenticated attackers to bypass access restriction to access and write non-public data via unspecified vectors.
network
low complexity
cybozu
6.5