Vulnerabilities > Cybozu > Critical

DATE CVE VULNERABILITY TITLE RISK
2014-11-24 CVE-2014-5314 Buffer Errors vulnerability in Cybozu Dezie, Mailwise and Office
Buffer overflow in Cybozu Office 9 and 10 before 10.1.0, Mailwise 4 and 5 before 5.1.4, and Dezie 8 before 8.1.1 allows remote authenticated users to execute arbitrary code via e-mail messages.
network
low complexity
cybozu CWE-119
critical
9.0
2014-07-20 CVE-2014-1987 OS Command Injection vulnerability in Cybozu Garoon
The CGI component in Cybozu Garoon 3.1.0 through 3.7 SP3 allows remote attackers to execute arbitrary commands via unspecified vectors.
network
low complexity
cybozu CWE-78
critical
10.0
2012-09-08 CVE-2012-4011 OS Command Injection vulnerability in Cybozu Kunai 2.0.5
The Cybozu KUNAI application before 2.0.6 for Android allows remote attackers to execute arbitrary Java methods, and obtain sensitive information or execute arbitrary commands, via a crafted web site.
network
cybozu CWE-78
critical
9.3