Show filters
197 Total Results
Displaying 81-90 of 197
Sort by:
Attacker Value
Unknown
CVE-2019-5938
Disclosure Date: May 17, 2019 (last updated November 27, 2024)
Cross-site scripting vulnerability in Cybozu Garoon 4.0.0 to 4.10.1 allows remote attackers to inject arbitrary web script or HTML via the application 'Mail'.
0
Attacker Value
Unknown
CVE-2019-5928
Disclosure Date: May 17, 2019 (last updated November 27, 2024)
Cross-site scripting vulnerability in Cybozu Garoon 4.0.0 to 4.6.3 allows remote attackers to inject arbitrary web script or HTML via Customize Item function.
0
Attacker Value
Unknown
CVE-2019-5943
Disclosure Date: May 17, 2019 (last updated November 27, 2024)
Cybozu Garoon 4.0.0 to 4.10.1 allows remote authenticated attackers to bypass access restriction to view the information without view privileges via the application 'Bulletin' and the application 'Cabinet'.
0
Attacker Value
Unknown
CVE-2019-5930
Disclosure Date: May 17, 2019 (last updated November 27, 2024)
Cybozu Garoon 4.0.0 to 4.6.3 allows remote attackers to bypass access restriction to browse unauthorized pages via the application 'Management of Basic System'.
0
Attacker Value
Unknown
CVE-2019-5929
Disclosure Date: May 17, 2019 (last updated November 27, 2024)
Cross-site scripting vulnerability in Cybozu Garoon 4.0.0 to 4.6.3 allows remote attackers to inject arbitrary web script or HTML via the application 'Memo'.
0
Attacker Value
Unknown
CVE-2019-5941
Disclosure Date: May 17, 2019 (last updated November 27, 2024)
Cybozu Garoon 4.0.0 to 4.10.1 allows remote authenticated attackers to bypass access restriction alter the Report without access privileges via the application 'Multi Report'.
0
Attacker Value
Unknown
CVE-2019-5944
Disclosure Date: May 17, 2019 (last updated November 27, 2024)
Cybozu Garoon 4.0.0 to 4.10.1 allows remote authenticated attackers to bypass access restriction alter the contents of application 'Address' without modify privileges via the application 'Address'.
0
Attacker Value
Unknown
CVE-2019-5945
Disclosure Date: May 17, 2019 (last updated November 27, 2024)
Cybozu Garoon 4.2.4 to 4.10.1 allow remote attackers to obtain the users' credential information via the authentication of Cybozu Garoon.
0
Attacker Value
Unknown
CVE-2019-5935
Disclosure Date: May 17, 2019 (last updated November 27, 2024)
Cybozu Garoon 4.0.0 to 4.10.1 allows remote authenticated attackers to bypass access restriction to change user information without access privileges via the Item function of User Information.
0
Attacker Value
Unknown
CVE-2019-5934
Disclosure Date: May 17, 2019 (last updated November 27, 2024)
SQL injection vulnerability in the Cybozu Garoon 4.0.0 to 4.10.0 allows attacker with administrator rights to execute arbitrary SQL commands via the Log Search function of application 'logging'.
0