Show filters
34 Total Results
Displaying 21-30 of 34
Sort by:
Attacker Value
Unknown

CVE-2015-8484

Disclosure Date: February 17, 2016 (last updated November 25, 2024)
Cybozu Office 9.9.0 through 10.3.0 allows remote authenticated users to bypass intended calendar-viewing restrictions via unspecified vectors, a different vulnerability than CVE-2015-8485, CVE-2015-8486, and CVE-2016-1152.
0
Attacker Value
Unknown

CVE-2015-7796

Disclosure Date: February 17, 2016 (last updated November 25, 2024)
Cross-site scripting (XSS) vulnerability in Cybozu Office 9.0.0 through 10.3.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2015-7795, CVE-2015-7797, CVE-2015-7798, CVE-2016-1149, and CVE-2016-1150.
0
Attacker Value
Unknown

CVE-2015-8486

Disclosure Date: February 17, 2016 (last updated November 25, 2024)
Cybozu Office 9.9.0 through 10.3.0 allows remote authenticated users to bypass intended access restrictions and read arbitrary report titles via unspecified vectors, a different vulnerability than CVE-2015-8484, CVE-2015-8485, and CVE-2016-1152.
0
Attacker Value
Unknown

CVE-2015-7795

Disclosure Date: February 17, 2016 (last updated November 25, 2024)
Cross-site scripting (XSS) vulnerability in Cybozu Office 9.0.0 through 10.3.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2015-7796, CVE-2015-7797, CVE-2015-7798, CVE-2016-1149, and CVE-2016-1150.
0
Attacker Value
Unknown

CVE-2015-8487

Disclosure Date: February 17, 2016 (last updated November 25, 2024)
Cybozu Office 9.0.0 through 10.3 allows remote attackers to discover CSRF tokens via unspecified vectors, a different vulnerability than CVE-2015-8488.
0
Attacker Value
Unknown

CVE-2015-7798

Disclosure Date: February 17, 2016 (last updated November 25, 2024)
Cross-site scripting (XSS) vulnerability in Cybozu Office 9.0.0 through 10.3.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2015-7795, CVE-2015-7796, CVE-2015-7797, CVE-2016-1149, and CVE-2016-1150.
0
Attacker Value
Unknown

CVE-2016-1150

Disclosure Date: February 17, 2016 (last updated November 25, 2024)
Cross-site scripting (XSS) vulnerability in Cybozu Office 9.0.0 through 10.3.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2015-7795, CVE-2015-7796, CVE-2015-7797, CVE-2015-7798, and CVE-2016-1149.
0
Attacker Value
Unknown

CVE-2015-8485

Disclosure Date: February 17, 2016 (last updated November 25, 2024)
Cybozu Office 9.9.0 through 10.3.0 allows remote authenticated users to bypass intended access restrictions and read arbitrary posting titles via unspecified vectors, a different vulnerability than CVE-2015-8484, CVE-2015-8486, and CVE-2016-1152.
0
Attacker Value
Unknown

CVE-2015-8489

Disclosure Date: February 17, 2016 (last updated November 25, 2024)
customapp in Cybozu Office 9.9.0 through 10.3.0 allows remote authenticated users to cause a denial of service (excessive database locking) via a crafted CSV file, a different vulnerability than CVE-2016-1153.
0
Attacker Value
Unknown

CVE-2015-8483

Disclosure Date: February 17, 2016 (last updated November 25, 2024)
Open redirect vulnerability in Cybozu Office 10.2.0 through 10.3.0 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a crafted URL.
0