Known Vulnerabilities for products from Cybozu

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Cybozu".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2023-46278 json Uncontrolled resource consumption vulnerability in Cybozu Remote Service 4.1.0 to 4.1.1 allows a remote authenticated attacke... 6.5 - MEDIUM 2023-11-01 2023-11-08
CVE-2023-27384 json Operation restriction bypass vulnerability in MultiReport of Cybozu Garoon 5.15.0 allows a remote authenticated attacker to a... 4.3 - MEDIUM 2023-05-23 2023-05-30
CVE-2023-27304 json Operation restriction bypass vulnerability in Message and Bulletin of Cybozu Garoon 4.6.0 to 5.9.2 allows a remote authentica... 4.3 - MEDIUM 2023-05-23 2023-05-31
CVE-2023-26595 json Denial-of-service (DoS) vulnerability in Message of Cybozu Garoon 4.10.0 to 5.9.2 allows a remote authenticated attacker to c... 6.5 - MEDIUM 2023-05-23 2023-05-31
CVE-2022-44608 json Uncontrolled resource consumption vulnerability in Cybozu Remote Service 4.0.0 to 4.0.3 allows a remote authenticated attacke... 7.5 - HIGH 2022-12-07 2022-12-09
CVE-2022-33311 json Browse restriction bypass vulnerability in Address Book of Cybozu Office 10.0.0 to 10.8.5 allows a remote authenticated attac... 4.3 - MEDIUM 2022-08-18 2023-08-08
CVE-2022-33151 json Cross-site scripting vulnerability in the specific parameters of Cybozu Office 10.0.0 to 10.8.5 allows remote attackers to in... 6.1 - MEDIUM 2022-08-18 2022-08-19
CVE-2022-32583 json Operation restriction bypass vulnerability in Scheduler of Cybozu Office 10.0.0 to 10.8.5 allows a remote authenticated attac... 4.3 - MEDIUM 2022-08-18 2023-08-08
CVE-2022-32544 json Operation restriction bypass vulnerability in Project of Cybozu Office 10.0.0 to 10.8.5 allows a remote authenticated attacke... 4.3 - MEDIUM 2022-08-18 2023-08-08
CVE-2022-32453 json HTTP header injection vulnerability in Cybozu Office 10.0.0 to 10.8.5 may allow a remote attacker to obtain and/or alter the ... 6.5 - MEDIUM 2022-08-18 2022-08-19
CVE-2022-32283 json Browse restriction bypass vulnerability in Cabinet of Cybozu Office 10.0.0 to 10.8.5 allows a remote authenticated attacker t... 4.3 - MEDIUM 2022-08-18 2022-08-19
CVE-2022-31472 json Browse restriction bypass vulnerability in Cabinet of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated attacker to ... 4.3 - MEDIUM 2022-07-11 2022-07-15
CVE-2022-30943 json Browsing restriction bypass vulnerability in Bulletin of Cybozu Garoon 4.0.0 to 5.9.1 allows a remote authenticated attacker ... 4.3 - MEDIUM 2022-07-11 2022-07-15
CVE-2022-30693 json Information disclosure vulnerability in the system configuration of Cybozu Office 10.0.0 to 10.8.5 allows a remote attacker t... 5.3 - MEDIUM 2022-08-18 2022-08-19
CVE-2022-30604 json Cross-site scripting vulnerability in the specific parameters of Cybozu Office 10.0.0 to 10.8.5 allows a remote attacker to i... 6.1 - MEDIUM 2022-08-18 2022-08-19
CVE-2022-30602 json Operation restriction bypass in multiple applications of Cybozu Garoon 4.0.0 to 5.9.1 allows a remote authenticated attacker ... 8.1 - HIGH 2022-07-11 2022-07-15
CVE-2022-29892 json Improper input validation vulnerability in Space of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated attacker to re... 6.5 - MEDIUM 2022-07-04 2023-08-08
CVE-2022-29891 json Browse restriction bypass vulnerability in Custom Ap of Cybozu Office 10.0.0 to 10.8.5 allows a remote authenticated attacker... 4.3 - MEDIUM 2022-08-18 2022-08-19
CVE-2022-29513 json Cross-site scripting vulnerability in Scheduler of Cybozu Garoon 4.10.0 to 5.5.1 allows a remote authenticated attacker with ... 4.8 - MEDIUM 2022-07-04 2022-07-12
CVE-2022-29512 json Exposure of sensitive information to an unauthorized actor issue in multiple applications of Cybozu Garoon 4.0.0 to 5.9.1 all... 6.5 - MEDIUM 2022-07-11 2023-08-08

Known software with vulnerabilities from Cybozu

Type Vendor Product Version
ApplicationCybozuCybozu Live1.0.4
ApplicationCybozuCybozu Office10.3.0
ApplicationCybozuDesktop2.0.23
ApplicationCybozuDezie8.0.0
ApplicationCybozuGaroon2.0.0
ApplicationCybozuKintone1.0.0
ApplicationCybozuKunai2.0.3
ApplicationCybozuKunai Browser For Remote Service-
ApplicationCybozuMailwise1.0.1
ApplicationCybozuOffice10.0.0
ApplicationCybozuRemote Service Manager2.2.0