Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-39817

Опубликовано: 06 авг. 2024
Источник: nvd
CVSS3: 6.5
EPSS Низкий

Описание

Insertion of sensitive information into sent data issue exists in Cybozu Office 10.0.0 to 10.8.6, which may allow a user who can login to the product to view data that the user does not have access by conducting 'search' under certain conditions in Custom App.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:cybozu:office:*:*:*:*:*:*:*:*
Версия от 10.0.0 (включая) до 10.8.7 (исключая)

EPSS

Процентиль: 67%
0.00543
Низкий

6.5 Medium

CVSS3

Дефекты

NVD-CWE-noinfo
CWE-200

Связанные уязвимости

CVSS3: 6.5
github
больше 1 года назад

Insertion of sensitive information into sent data issue exists in Cybozu Office 10.0.0 to 10.8.6, which may allow a user who can login to the product to view data that the user does not have access by conducting 'search' under certain conditions in Custom App.

EPSS

Процентиль: 67%
0.00543
Низкий

6.5 Medium

CVSS3

Дефекты

NVD-CWE-noinfo
CWE-200