Vulnerabilities > Cybozu

DATE CVE VULNERABILITY TITLE RISK
2017-04-21 CVE-2016-1194 Resource Management Errors vulnerability in Cybozu Garoon 4.2.0
Cybozu Garoon before 4.2.1 allows remote attackers to cause a denial of service.
network
low complexity
cybozu CWE-399
6.5
2017-04-20 CVE-2016-4844 Information Exposure vulnerability in Cybozu Mailwise
Cybozu Mailwise before 5.4.0 allows remote attackers to conduct clickjacking attacks.
network
low complexity
cybozu CWE-200
4.3
2017-04-20 CVE-2016-4843 Information Exposure vulnerability in Cybozu Mailwise
Cybozu Mailwise before 5.4.0 allows remote attackers to obtain sensitive cookie information.
network
low complexity
cybozu CWE-200
6.5
2017-04-20 CVE-2016-4842 Information Exposure vulnerability in Cybozu Mailwise
Cybozu Mailwise before 5.4.0 allows remote attackers to obtain information on when an email is read.
network
low complexity
cybozu CWE-200
4.3
2017-04-20 CVE-2016-1220 Improper Access Control vulnerability in Cybozu Garoon
Cybozu Garoon before 4.2.2 does not properly restrict access.
network
low complexity
cybozu CWE-284
4.3
2017-04-20 CVE-2016-1218 SQL Injection vulnerability in Cybozu Garoon
SQL injection vulnerability in Cybozu Garoon before 4.2.2.
network
low complexity
cybozu CWE-89
8.8
2017-04-20 CVE-2016-1217 Cross-site Scripting vulnerability in Cybozu Garoon
Cross-site scripting (XSS) vulnerability in the "Check available times" function in Cybozu Garoon before 4.2.2.
network
low complexity
cybozu CWE-79
6.1
2017-04-20 CVE-2016-1216 Cross-site Scripting vulnerability in Cybozu Garoon
Cross-site scripting (XSS) vulnerability in the "New appointment" function in Cybozu Garoon before 4.2.2.
network
low complexity
cybozu CWE-79
6.1
2017-04-20 CVE-2016-1215 Cross-site Scripting vulnerability in Cybozu Garoon
Cross-site scripting (XSS) vulnerability in the "User details" function in Cybozu Garoon before 4.2.2.
network
low complexity
cybozu CWE-79
6.1
2017-04-20 CVE-2016-1214 Cross-site Scripting vulnerability in Cybozu Garoon
Cross-site scripting (XSS) vulnerability in the "Response request" function in Cybozu Garoon before 4.2.2.
network
low complexity
cybozu CWE-79
6.1