Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
cybozu garoon vulnerabilities and exploits
(subscribe to this query)
5.4
CVSSv3
CVE-2019-5936
Directory traversal vulnerability in Cybozu Garoon 4.0.0 to 4.10.1 allows remote authenticated malicious users to obtain files without access privileges via the application 'Work Flow'.
Cybozu Garoon
5.4
CVSSv3
CVE-2019-5937
Cross-site scripting vulnerability in Cybozu Garoon 4.0.0 to 4.10.1 allows remote authenticated malicious users to inject arbitrary web script or HTML via the user information.
Cybozu Garoon
6.1
CVSSv3
CVE-2019-5938
Cross-site scripting vulnerability in Cybozu Garoon 4.0.0 to 4.10.1 allows remote malicious users to inject arbitrary web script or HTML via the application 'Mail'.
Cybozu Garoon
6.1
CVSSv3
CVE-2019-5939
Cross-site scripting vulnerability in Cybozu Garoon 4.0.0 to 4.10.1 allows remote malicious users to inject arbitrary web script or HTML via the application 'Portal'.
Cybozu Garoon
6.1
CVSSv3
CVE-2019-5940
Cross-site scripting vulnerability in Cybozu Garoon 4.0.0 to 4.10.1 allows remote malicious users to inject arbitrary web script or HTML via the application 'Scheduler'.
Cybozu Garoon
4.3
CVSSv3
CVE-2019-5941
Cybozu Garoon 4.0.0 to 4.10.1 allows remote authenticated malicious users to bypass access restriction alter the Report without access privileges via the application 'Multi Report'.
Cybozu Garoon
4.3
CVSSv3
CVE-2019-5942
Cybozu Garoon 4.0.0 to 4.10.1 allows remote authenticated malicious users to bypass access restriction to obtain files without access privileges via the Multiple Files Download function of application 'Cabinet'.
Cybozu Garoon
4.3
CVSSv3
CVE-2019-5943
Cybozu Garoon 4.0.0 to 4.10.1 allows remote authenticated malicious users to bypass access restriction to view the information without view privileges via the application 'Bulletin' and the application 'Cabinet'.
Cybozu Garoon
4.3
CVSSv3
CVE-2019-5944
Cybozu Garoon 4.0.0 to 4.10.1 allows remote authenticated malicious users to bypass access restriction alter the contents of application 'Address' without modify privileges via the application 'Address'.
Cybozu Garoon
9.8
CVSSv3
CVE-2019-5945
Cybozu Garoon 4.2.4 to 4.10.1 allow remote malicious users to obtain the users' credential information via the authentication of Cybozu Garoon.
Cybozu Garoon
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-23692
malicious code
XML injection
CVE-2024-28020
CVE-2024-35252
CVE-2024-5833
CVE-2024-30066
injection
CVE-2024-23282
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
4
5
6
7
8
9
10
NEXT »