4.9
CVSSv2

CVE-2014-0817

Published: 27/02/2014 Updated: 27/02/2014
CVSS v2 Base Score: 4.9 | Impact Score: 4.9 | Exploitability Score: 6.8
VMScore: 436
Vector: AV:N/AC:M/Au:S/C:P/I:P/A:N

Vulnerability Summary

Cybozu Garoon 2.x up to and including 2.5.4 and 3.x up to and including 3.7 SP3 does not properly manage sessions, which allows remote authenticated users to impersonate arbitrary users via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

cybozu garoon 2.0

cybozu garoon 2.1.0

cybozu garoon 2.1.1

cybozu garoon 2.1.2

cybozu garoon 2.1.3

cybozu garoon 2.5.3

cybozu garoon 2.5.1

cybozu garoon 2.0.1

cybozu garoon 2.1

cybozu garoon 2.5

cybozu garoon 2.0.3

cybozu garoon 2.0.4

cybozu garoon 2.0.5

cybozu garoon 2.0.6

cybozu garoon 2.5.0

cybozu garoon 2.5.2

cybozu garoon 2.5.4

cybozu garoon 2.0.0

cybozu garoon 2.0.2

cybozu garoon 3.1

cybozu garoon 3.5

cybozu garoon 3.0

cybozu garoon 3.7

cybozu garoon 3.5.3