CVE-2024-31397
MEDIUMCybozu Garoon < 5.15.2 - Denial of Service
Title source: ruleDescription
Improper handling of extra values issue exists in Cybozu Garoon 5.0.0 to 5.15.2. If this vulnerability is exploited, a user who can log in to the product with the administrative privilege may be able to cause a denial-of-service (DoS) condition.
Scores
CVSS v3
4.9
EPSS
0.0012
EPSS Percentile
31.0%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
Classification
CWE
CWE-231
Status
published
Affected Products (1)
cybozu/garoon
< 5.15.2
Timeline
Published
Jun 11, 2024
Tracked Since
Feb 18, 2026