6.5
CVSSv2

CVE-2014-0821

Published: 27/02/2014 Updated: 13/08/2015
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
VMScore: 578
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in the download feature in Cybozu Garoon 2.x up to and including 2.5.4 and 3.x up to and including 3.7 SP3 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors, a different vulnerability than CVE-2013-6930 and CVE-2013-6931.

Vulnerable Product Search on Vulmon Subscribe to Product

cybozu garoon 2.0

cybozu garoon 2.0.0

cybozu garoon 2.0.1

cybozu garoon 2.1.3

cybozu garoon 2.5

cybozu garoon 2.5.3

cybozu garoon 2.5.2

cybozu garoon 2.5.1

cybozu garoon 2.0.6

cybozu garoon 2.1

cybozu garoon 2.0.3

cybozu garoon 2.0.5

cybozu garoon 2.1.1

cybozu garoon 2.5.4

cybozu garoon 2.0.2

cybozu garoon 2.0.4

cybozu garoon 2.1.0

cybozu garoon 2.1.2

cybozu garoon 2.5.0

cybozu garoon 3.5

cybozu garoon 3.0

cybozu garoon 3.1

cybozu garoon 3.7

cybozu garoon 3.5.3