356
VMScore

CVE-2016-1196

Published: 19/06/2016 Updated: 21/06/2016
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

Cybozu Garoon 3.x and 4.x prior to 4.2.1 allows remote authenticated users to bypass intended access restrictions and obtain sensitive Address Book information via an API call, a different vulnerability than CVE-2015-7776.

Vulnerable Product Search on Vulmon Subscribe to Product

cybozu garoon 4.2.0

cybozu garoon 4.0.2

cybozu garoon 3.7.3

cybozu garoon 3.7.1

cybozu garoon 3.5.0

cybozu garoon 3.1.2

cybozu garoon 3.5.5

cybozu garoon 3.5.4

cybozu garoon 3.5.3

cybozu garoon 3.5.2

cybozu garoon 4.0.1

cybozu garoon 4.0.0

cybozu garoon 3.7.5

cybozu garoon 3.7.4

cybozu garoon 3.1.0

cybozu garoon 3.0.3

cybozu garoon 3.0.2

cybozu garoon 3.0.1

cybozu garoon 4.0.3

cybozu garoon 3.7.2

cybozu garoon 3.7.0

cybozu garoon 3.5.1

cybozu garoon 3.1.3

cybozu garoon 3.1.1

cybozu garoon 3.0.0