cybozu

330 tracked vulnerabilities.

CVE-2016-4869 MEDIUM
Cybozu Office 9.0.0-10.4.0 - Exposure of Sensitive Information via CGI Environment Variables
Apr 17, 2017
CVSS 6.5
EPSS 0.01
CVE-2016-4868 MEDIUM
Cybozu Office 9.0.0-10.4.0 - Email Header Injection
Apr 17, 2017
CVSS 4.3
EPSS 0.01
CVE-2016-4867 MEDIUM
Cybozu Office 9.0.0-10.4.0 - Authenticated Unauthorized Project Information Exposure via Project Function
Apr 17, 2017
CVSS 4.3
EPSS 0.00
CVE-2016-4866 MEDIUM
Cybozu Office 9.0.0-10.4.0 - Authenticated Cross-Site Scripting via Project Function
Apr 17, 2017
CVSS 4.8
EPSS 0.00
CVE-2016-4865 MEDIUM
Cybozu Office 9.0.0-10.4.0 - Authenticated Cross-Site Scripting via Customapp Function
Apr 17, 2017
CVSS 4.8
EPSS 0.00
CVE-2016-1193 HIGH
Cybozu Garoon <4.2 - Info Disclosure
Jun 25, 2016
CVSS 7.5
EPSS 0.00
CVE-2016-1190 MEDIUM
Cybozu Garoon 3.1-4.2 - Authenticated Improper Access Control
Jun 25, 2016
CVSS 6.5
EPSS 0.00
CVE-2016-1189 HIGH
Cybozu Garoon 3.x and 4.x < 4.2.1 - Authenticated Portlet Access Control Bypass
Jun 25, 2016
CVSS 8.1
EPSS 0.00
CVE-2016-1188 MEDIUM
Cybozu Garoon <4.2.1 - Open Redirect
Jun 25, 2016
CVSS 6.5
EPSS 0.00
CVE-2016-1196 MEDIUM
Cybozu Garoon 3.x and 4.x < 4.2.1 - Authenticated Sensitive Information Exposure via Address Book API
Jun 19, 2016
CVSS 4.3
EPSS 0.00
CVE-2016-1192 MEDIUM
Cybozu Garoon <4.2 - Path Traversal
Jun 19, 2016
CVSS 4.3
EPSS 0.00
CVE-2016-1191 MEDIUM
Cybozu Garoon <4.2.1 - Path Traversal
Jun 19, 2016
CVSS 5.3
EPSS 0.01
CVE-2016-1197 MEDIUM
Cybozu Garoon 4.x - Cross-Site Scripting
Jun 19, 2016
CVSS 6.1
EPSS 0.00
CVE-2016-1195 HIGH
Cybozu Garoon <4.2.1 - Open Redirect
Jun 19, 2016
CVSS 7.4
EPSS 0.00
CVE-2016-1185 LOW
Cybozu kintone mobile <1.0.6 - Info Disclosure
Apr 25, 2016
CVSS 2.5
EPSS 0.00
CVE-2016-1153 MEDIUM
Cybozu Office 9.9.0-10.3.0 - Authenticated Denial of Service
Feb 17, 2016
CVSS 6.5
EPSS 0.01
CVE-2016-1152 MEDIUM
Cybozu Office 9.9.0-10.3.0 - Auth Bypass
Feb 17, 2016
CVSS 5.4
EPSS 0.00
CVE-2016-1151 HIGH
Cybozu Office 9.9.0-10.3.0 - Cross-Site Request Forgery
Feb 17, 2016
CVSS 8.8
EPSS 0.00
CVE-2016-1150 MEDIUM
Cybozu Office 9.0.0-10.3.0 - Cross-Site Scripting
Feb 17, 2016
CVSS 6.1
EPSS 0.01
CVE-2016-1149 MEDIUM
Cybozu Office 9.0.0-10.3.0 - Cross-Site Scripting
Feb 17, 2016
CVSS 6.1
EPSS 0.01
CVE-2015-7776 MEDIUM
Cybozu Garoon 3.x-4.x < 4.2.0 - Unauthorized Sensitive Information Exposure via IMG Element Loading
Jun 19, 2016
CVSS 4.3
EPSS 0.01
CVE-2015-7775 MEDIUM
Cybozu Garoon 4.0.3 - Authenticated Cross-Site Scripting
Jun 19, 2016
CVSS 5.4
EPSS 0.00
CVE-2015-8489 MEDIUM
Cybozu Office 9.9.0-10.3.0 - Authenticated Denial of Service via Crafted CSV File
Feb 17, 2016
CVSS 6.5
EPSS 0.01
CVE-2015-8488 MEDIUM
Cybozu Office 10.3.0 - Info Disclosure
Feb 17, 2016
CVSS 4.3
EPSS 0.00
CVE-2015-8487 MEDIUM
Cybozu Office 9.0.0-10.3 - CSRF Token Exposure
Feb 17, 2016
CVSS 4.3
EPSS 0.00