CVE-2013-6905

Cybozu Garoon < 3.5 - XSS

Title source: rule

Description

Cross-site scripting (XSS) vulnerability in a phone component in Cybozu Garoon before 3.7.0, when Internet Explorer or Firefox is used, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Scores

EPSS 0.0033
EPSS Percentile 55.6%

Details

CWE
CWE-79
Status published
Products (30)
cybozu/garoon < 3.5
cybozu/garoon
cybozu/garoon
cybozu/garoon
cybozu/garoon
cybozu/garoon
cybozu/garoon
cybozu/garoon
cybozu/garoon
cybozu/garoon
... and 20 more
Published Dec 05, 2013
Tracked Since Feb 18, 2026