Vulnerabilities > Cybozu > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-08-18 | CVE-2022-33151 | Cross-site Scripting vulnerability in Cybozu Office Cross-site scripting vulnerability in the specific parameters of Cybozu Office 10.0.0 to 10.8.5 allows remote attackers to inject an arbitrary script via unspecified vectors. | 6.1 |
2022-08-18 | CVE-2022-33311 | Unspecified vulnerability in Cybozu Office Browse restriction bypass vulnerability in Address Book of Cybozu Office 10.0.0 to 10.8.5 allows a remote authenticated attacker to obtain the data of Address Book via unspecified vectors. | 4.3 |
2022-07-11 | CVE-2022-29512 | Information Exposure vulnerability in Cybozu Garoon Exposure of sensitive information to an unauthorized actor issue in multiple applications of Cybozu Garoon 4.0.0 to 5.9.1 allows a remote authenticated attacker to obtain the data without the viewing privilege. | 6.5 |
2022-07-11 | CVE-2022-30943 | Unspecified vulnerability in Cybozu Garoon Browsing restriction bypass vulnerability in Bulletin of Cybozu Garoon 4.0.0 to 5.9.1 allows a remote authenticated attacker to obtain the data of Bulletin. | 4.3 |
2022-07-11 | CVE-2022-31472 | Unspecified vulnerability in Cybozu Garoon Browse restriction bypass vulnerability in Cabinet of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated attacker to obtain the data of Cabinet. | 4.3 |
2022-07-04 | CVE-2022-26051 | Unspecified vulnerability in Cybozu Garoon Operation restriction bypass vulnerability in Portal of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated attacker to alter the data of Portal. | 4.3 |
2022-07-04 | CVE-2022-26054 | Unspecified vulnerability in Cybozu Garoon Operation restriction bypass vulnerability in Link of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated attacker to alter the data of Link. | 4.3 |
2022-07-04 | CVE-2022-26368 | Unspecified vulnerability in Cybozu Garoon Browse restriction bypass and operation restriction bypass vulnerability in Cabinet of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated attacker to alter and/or obtain the data of Cabinet. | 5.4 |
2022-07-04 | CVE-2022-27627 | Cross-site Scripting vulnerability in Cybozu Garoon Cross-site scripting vulnerability in Organization's Information of Cybozu Garoon 4.10.2 to 5.5.1 allows a remote attacker to execute an arbitrary script on the logged-in user's web browser. | 6.1 |
2022-07-04 | CVE-2022-27661 | Unspecified vulnerability in Cybozu Garoon Operation restriction bypass vulnerability in Workflow of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated attacker to alter the data of Workflow. | 4.3 |