Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4429-9xv8-3xpm

Опубликовано: 06 авг. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

Insertion of sensitive information into sent data issue exists in Cybozu Office 10.0.0 to 10.8.6, which may allow a user who can login to the product to view data that the user does not have access by conducting 'search' under certain conditions in Custom App.

Insertion of sensitive information into sent data issue exists in Cybozu Office 10.0.0 to 10.8.6, which may allow a user who can login to the product to view data that the user does not have access by conducting 'search' under certain conditions in Custom App.

EPSS

Процентиль: 67%
0.00543
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 6.5
nvd
больше 1 года назад

Insertion of sensitive information into sent data issue exists in Cybozu Office 10.0.0 to 10.8.6, which may allow a user who can login to the product to view data that the user does not have access by conducting 'search' under certain conditions in Custom App.

EPSS

Процентиль: 67%
0.00543
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-200