Vulnerability index

Browse CVEs

187 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2026-22888 Improper input verification issue exists in Cybozu Garoon 5.0.0 to 6.0.3, which may lead to unauthorized alteration of portal settings, potentially b… Garoon 6.0.3+ Fix from $1,9502026-02-02 MEDIUM 6.1 CVE-2026-20711 Cross-site scripting vulnerability exists in E-mail function of Cybozu Garoon 5.0.0 to 6.0.3, which may allow an attacker to reset arbitrary users’ p… Garoon 6.0.3+ Fix from $1,6002026-02-02 MEDIUM 5.4 CVE-2026-22881 Cross-site scripting vulnerability exists in Message function of Cybozu Garoon 5.15.0 to 6.0.3, which may allow an attacker to reset arbitrary users’… Garoon 6.0.3+ Fix from $1,6002026-02-02 MEDIUM 6.5 CVE-2024-39817 Insertion of sensitive information into sent data issue exists in Cybozu Office 10.0.0 to 10.8.6, which may allow a user who can login to the product… Office 10.8.7+ Fix from $1,6002024-08-06 MEDIUM 5.4 CVE-2024-39457 Cybozu Garoon 6.0.0 to 6.0.1 contains a cross-site scripting vulnerability in PDF preview. If this vulnerability is exploited, an arbitrary script ma… Garoon 6.0.2+ Fix from $1,6002024-07-19 MEDIUM 6.5 CVE-2024-31399 Excessive platform resource consumption within a loop issue exists in Cybozu Garoon 5.0.0 to 5.15.2. If this vulnerability is exploited, processing a… Garoon after 5.15.2 Fix from $1,6002024-06-11 CRITICAL 9.0 CVE-2024-31401 Cross-site scripting vulnerability in Cybozu Garoon 5.0.0 to 5.15.2 allows a remote authenticated attacker with an administrative privilege to inject… Garoon 6.0.0+ Fix from $2,3002024-06-11 MEDIUM 6.5 CVE-2024-31400 Insertion of sensitive information into sent data issue exists in Cybozu Garoon 5.0.0 to 5.15.0. If this vulnerability is exploited, unintended data … Garoon 6.0.0+ Fix from $1,6002024-06-11 MEDIUM 5.4 CVE-2024-31403 Incorrect authorization vulnerability in Cybozu Garoon 5.0.0 to 6.0.0 allows a remote authenticated attacker to alter and/or obtain the data of Memo. Garoon 6.0.1+ Fix from $1,6002024-06-11 HIGH 7.5 CVE-2024-23304 Cybozu KUNAI for Android 3.0.20 to 3.0.21 allows a remote unauthenticated attacker to cause a denial-of-service (DoS) condition by performing certain… Kunai Mitigation only Fix from $1,9502024-02-06 MEDIUM 6.5 CVE-2023-46278 Uncontrolled resource consumption vulnerability in Cybozu Remote Service 4.1.0 to 4.1.1 allows a remote authenticated attacker to consume huge storag… Cybozu Remote Service 4.1.2+ Fix from $1,6002023-11-01 MEDIUM 6.5 CVE-2022-26838 Path traversal vulnerability in Importing Mobile Device Data of Cybozu Remote Service 3.1.2 allows a remote authenticated attacker to cause a denial-… Remote Service Manager Mitigation only Fix from $1,6002023-08-03 MEDIUM 6.5 CVE-2023-26595 Denial-of-service (DoS) vulnerability in Message of Cybozu Garoon 4.10.0 to 5.9.2 allows a remote authenticated attacker to cause a denial of service… Garoon after 5.9.2 Fix from $1,6002023-05-23 HIGH 7.5 CVE-2022-44608 Uncontrolled resource consumption vulnerability in Cybozu Remote Service 4.0.0 to 4.0.3 allows a remote authenticated attacker to consume huge storag… Cybozu Remote Service after 4.0.3 Fix from $1,9502022-12-07 MEDIUM 6.5 CVE-2022-32453 HTTP header injection vulnerability in Cybozu Office 10.0.0 to 10.8.5 may allow a remote attacker to obtain and/or alter the data of the product via … Office after 10.8.5 Fix from $1,6002022-08-18 MEDIUM 6.1 CVE-2022-28715 Cross-site scripting vulnerability in the specific parameters of Cybozu Office 10.0.0 to 10.8.5 allows a remote attacker to inject an arbitrary scrip… Office after 10.8.5 Fix from $1,6002022-08-18 MEDIUM 6.1 CVE-2022-29487 Cross-site scripting vulnerability in Cybozu Office 10.0.0 to 10.8.5 allows a remote attacker to inject an arbitrary script via unspecified vectors. Office after 10.8.5 Fix from $1,6002022-08-18 MEDIUM 6.1 CVE-2022-30604 Cross-site scripting vulnerability in the specific parameters of Cybozu Office 10.0.0 to 10.8.5 allows a remote attacker to inject an arbitrary scrip… Office after 10.8.5 Fix from $1,6002022-08-18 MEDIUM 6.1 CVE-2022-33151 Cross-site scripting vulnerability in the specific parameters of Cybozu Office 10.0.0 to 10.8.5 allows remote attackers to inject an arbitrary script… Office after 10.8.5 Fix from $1,6002022-08-18 MEDIUM 5.3 CVE-2022-30693 Information disclosure vulnerability in the system configuration of Cybozu Office 10.0.0 to 10.8.5 allows a remote attacker to obtain the data of the… Office after 10.8.5 Fix from $1,6002022-08-18 HIGH 8.1 CVE-2022-30602 Operation restriction bypass in multiple applications of Cybozu Garoon 4.0.0 to 5.9.1 allows a remote authenticated attacker to alter the file inform… Garoon after 5.9.1 Fix from $1,9502022-07-11 MEDIUM 6.5 CVE-2022-29512 Exposure of sensitive information to an unauthorized actor issue in multiple applications of Cybozu Garoon 4.0.0 to 5.9.1 allows a remote authenticat… Garoon after 5.9.1 Fix from $1,6002022-07-11 HIGH 8.1 CVE-2022-29484 Operation restriction bypass vulnerability in Space of Cybozu Garoon 4.0.0 to 5.9.0 allows a remote authenticated attacker to delete the data of Spac… Garoon after 5.9.0 Fix from $1,9502022-07-04 MEDIUM 6.5 CVE-2022-29892 Improper input validation vulnerability in Space of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated attacker to repeatedly display errors … Garoon after 5.5.1 Fix from $1,6002022-07-04 MEDIUM 6.1 CVE-2022-27627 Cross-site scripting vulnerability in Organization's Information of Cybozu Garoon 4.10.2 to 5.5.1 allows a remote attacker to execute an arbitrary sc… Garoon after 5.5.1 Fix from $1,6002022-07-04 MEDIUM 5.4 CVE-2022-26368 Browse restriction bypass and operation restriction bypass vulnerability in Cabinet of Cybozu Garoon 4.0.0 to 5.5.1 allows a remote authenticated att… Garoon after 5.5.1 Fix from $1,6002022-07-04 MEDIUM 5.3 CVE-2022-28713 Improper authentication vulnerability in Scheduler of Cybozu Garoon 4.10.0 to 5.5.1 allows a remote attacker to obtain some data of Facility Informat… Garoon after 5.5.1 Fix from $1,6002022-07-04 MEDIUM 6.5 CVE-2021-20804 Cybozu Remote Service 3.1.8 to 3.1.9 allows a remote authenticated attacker to cause a denial of service (DoS) condition via unspecified vectors. Remote Service Manager Mitigation only Fix from $1,6002021-10-13 MEDIUM 6.1 CVE-2021-20806 Open redirect vulnerability in Cybozu Remote Service 3.0.0 to 3.1.9 allows remote attackers to redirect users to arbitrary web sites and conduct phis… Remote Service Manager after 3.1.9 Fix from $1,6002021-10-13 MEDIUM 6.1 CVE-2021-20807 Cross-site scripting vulnerability in the management screen of Cybozu Remote Service 3.0.0 to 3.1.9 allows a remote attacker to inject an arbitrary s… Remote Service Manager after 3.1.9 Fix from $1,6002021-10-13