Vulnerabilities > Cybozu > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-11-01 CVE-2023-46278 Resource Exhaustion vulnerability in Cybozu Remote Service
Uncontrolled resource consumption vulnerability in Cybozu Remote Service 4.1.0 to 4.1.1 allows a remote authenticated attacker to consume huge storage space or cause significantly delayed communication.
network
low complexity
cybozu CWE-400
6.5
2023-08-03 CVE-2022-26838 Path Traversal vulnerability in Cybozu Remote Service Manager 3.1.2
Path traversal vulnerability in Importing Mobile Device Data of Cybozu Remote Service 3.1.2 allows a remote authenticated attacker to cause a denial-of-service (DoS) condition.
network
low complexity
cybozu CWE-22
6.5
2023-05-23 CVE-2023-26595 Resource Exhaustion vulnerability in Cybozu Garoon
Denial-of-service (DoS) vulnerability in Message of Cybozu Garoon 4.10.0 to 5.9.2 allows a remote authenticated attacker to cause a denial of service condition.
network
low complexity
cybozu CWE-400
6.5
2023-05-23 CVE-2023-27304 Unspecified vulnerability in Cybozu Garoon
Operation restriction bypass vulnerability in Message and Bulletin of Cybozu Garoon 4.6.0 to 5.9.2 allows a remote authenticated attacker to alter the data of Message and/or Bulletin.
network
low complexity
cybozu
4.3
2023-05-23 CVE-2023-27384 Unspecified vulnerability in Cybozu Garoon 5.15.0
Operation restriction bypass vulnerability in MultiReport of Cybozu Garoon 5.15.0 allows a remote authenticated attacker to alter the data of MultiReport.
network
low complexity
cybozu
4.3
2022-08-18 CVE-2022-25986 Unspecified vulnerability in Cybozu Office
Browse restriction bypass vulnerability in Scheduler of Cybozu Office 10.0.0 to 10.8.5 allows a remote authenticated attacker to obtain the data of Scheduler.
network
low complexity
cybozu
4.3
2022-08-18 CVE-2022-32544 Unspecified vulnerability in Cybozu Office
Operation restriction bypass vulnerability in Project of Cybozu Office 10.0.0 to 10.8.5 allows a remote authenticated attacker to alter the data of Project via unspecified vectors.
network
low complexity
cybozu
4.3
2022-08-18 CVE-2022-32583 Unspecified vulnerability in Cybozu Office
Operation restriction bypass vulnerability in Scheduler of Cybozu Office 10.0.0 to 10.8.5 allows a remote authenticated attacker to alter the data of Scheduler via unspecified vectors.
network
low complexity
cybozu
4.3
2022-08-18 CVE-2022-33311 Unspecified vulnerability in Cybozu Office
Browse restriction bypass vulnerability in Address Book of Cybozu Office 10.0.0 to 10.8.5 allows a remote authenticated attacker to obtain the data of Address Book via unspecified vectors.
network
low complexity
cybozu
4.3
2022-07-11 CVE-2022-29512 Information Exposure vulnerability in Cybozu Garoon
Exposure of sensitive information to an unauthorized actor issue in multiple applications of Cybozu Garoon 4.0.0 to 5.9.1 allows a remote authenticated attacker to obtain the data without the viewing privilege.
network
low complexity
cybozu CWE-200
6.5