6.8
CVSSv2

CVE-2013-2305

Published: 25/04/2013 Updated: 25/04/2013
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site request forgery (CSRF) vulnerability in Cybozu Office prior to 8.1.6 and 9.x prior to 9.3.0, Cybozu Dezie prior to 8.0.7, and Cybozu Mailwise prior to 5.0.4 allows remote malicious users to hijack the authentication of arbitrary users for requests that change passwords.

Vulnerable Product Search on Vulmon Subscribe to Product

cybozu cybozu office 7

cybozu cybozu office 9

cybozu cybozu office 9.2.1

cybozu cybozu office

cybozu cybozu office 6

cybozu cybozu dezie 8.0.0

cybozu cybozu dezie 8.0.4

cybozu cybozu dezie 8.0.2

cybozu cybozu dezie

cybozu cybozu dezie 8.0.5

cybozu cybozu dezie 8.0.3

cybozu cybozu dezie 8.0.1

cybozu mailwise

cybozu mailwise 3.0\\(0.2\\)

cybozu mailwise 3.0

cybozu mailwise 2.1

cybozu mailwise 1.0

cybozu mailwise 2.0