6.5
CVSSv2

CVE-2016-7803

Published: 09/06/2017 Updated: 13/06/2017
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 578
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in the Cybozu Garoon 3.0.0 to 4.2.2 allows remote authenticated malicious users to execute arbitrary SQL commands via "MultiReport" function.

Vulnerable Product Search on Vulmon Subscribe to Product

cybozu garoon 3.0.0

cybozu garoon 3.7.0

cybozu garoon 3.7.1

cybozu garoon 3.7.2

cybozu garoon 3.7.3

cybozu garoon 3.1.1

cybozu garoon 3.1.2

cybozu garoon 3.1.3

cybozu garoon 3.5.0

cybozu garoon 4.0.2

cybozu garoon 4.0.3

cybozu garoon 4.2.0

cybozu garoon 4.2.1

cybozu garoon 3.0.1

cybozu garoon 3.0.3

cybozu garoon 3.5.2

cybozu garoon 3.5.4

cybozu garoon 3.7.5

cybozu garoon 4.0.1

cybozu garoon 4.2.2

cybozu garoon 3.0.2

cybozu garoon 3.1.0

cybozu garoon 3.5.1

cybozu garoon 3.5.3

cybozu garoon 3.5.5

cybozu garoon 3.7.4

cybozu garoon 4.0.0