6.8
CVSSv2

CVE-2015-8489

Published: 17/02/2016 Updated: 22/02/2016
CVSS v2 Base Score: 6.8 | Impact Score: 6.9 | Exploitability Score: 8
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 605
Vector: AV:N/AC:L/Au:S/C:N/I:N/A:C

Vulnerability Summary

customapp in Cybozu Office 9.9.0 up to and including 10.3.0 allows remote authenticated users to cause a denial of service (excessive database locking) via a crafted CSV file, a different vulnerability than CVE-2016-1153.

Vulnerable Product Search on Vulmon Subscribe to Product

cybozu office 10.0.0

cybozu office 10.2.0

cybozu office 9.9.0

cybozu office 10.0.1

cybozu office 10.0.2

cybozu office 10.1.0

cybozu office 10.1.2

cybozu office 10.3.0