CVE-2015-8487

MEDIUM

Cybozu Office <10.3 - CSRF

Title source: llm

Description

Cybozu Office 9.0.0 through 10.3 allows remote attackers to discover CSRF tokens via unspecified vectors, a different vulnerability than CVE-2015-8488.

Scores

CVSS v3 4.3
EPSS 0.0031
EPSS Percentile 53.5%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N

Classification

CWE
CWE-200
Status draft

Affected Products (15)

cybozu/office
cybozu/office
cybozu/office
cybozu/office
cybozu/office
cybozu/office
cybozu/office
cybozu/office
cybozu/office
cybozu/office
cybozu/office
cybozu/office
cybozu/office
cybozu/office
cybozu/office

Timeline

Published Feb 17, 2016
Tracked Since Feb 18, 2026