Описание
Cybozu Office before 8.0.0 allows remote authenticated users to bypass intended access restrictions and access sensitive information (time card and attendance) via unspecified vectors related to manipulation of a URL.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 7 (включая)
Одно из
cpe:2.3:a:cybozu:office:*:*:*:*:*:*:*:*
cpe:2.3:a:cybozu:office:6:*:*:*:*:*:*:*
EPSS
Процентиль: 55%
0.00323
Низкий
5.5 Medium
CVSS2
Дефекты
CWE-264
Связанные уязвимости
github
больше 3 лет назад
Cybozu Office before 8.0.0 allows remote authenticated users to bypass intended access restrictions and access sensitive information (time card and attendance) via unspecified vectors related to manipulation of a URL.
EPSS
Процентиль: 55%
0.00323
Низкий
5.5 Medium
CVSS2
Дефекты
CWE-264