Vulnerability index

Browse CVEs

187 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.1 CVE-2015-7798 Cross-site scripting (XSS) vulnerability in Cybozu Office 9.0.0 through 10.3.0 allows remote attackers to inject arbitrary web script or HTML via uns… Office No fix yet Fix from $1,6002016-02-17 MEDIUM 6.1 CVE-2015-7797 Cross-site scripting (XSS) vulnerability in Cybozu Office 9.0.0 through 10.3.0 allows remote attackers to inject arbitrary web script or HTML via uns… Office Mitigation only Fix from $1,6002016-02-17 MEDIUM 6.1 CVE-2015-7796 Cross-site scripting (XSS) vulnerability in Cybozu Office 9.0.0 through 10.3.0 allows remote attackers to inject arbitrary web script or HTML via uns… Office Mitigation only Fix from $1,6002016-02-17 MEDIUM 6.1 CVE-2015-7795 Cross-site scripting (XSS) vulnerability in Cybozu Office 9.0.0 through 10.3.0 allows remote attackers to inject arbitrary web script or HTML via uns… Office Mitigation only Fix from $1,6002016-02-17 HIGH 8.5 CVE-2015-5647 The RSS Reader component in Cybozu Garoon 3.x through 3.7.5 and 4.x through 4.0.3 allows remote authenticated users to execute arbitrary PHP code via… Garoon Mitigation only Fix from $1,9502015-10-12 HIGH 8.5 CVE-2015-5646 Cybozu Garoon 3.x through 3.7.5 and 4.x through 4.0.3 allows remote authenticated users to execute arbitrary PHP code via unspecified vectors, aka Cy… Garoon Patch available Fix from $1,9502015-10-12 HIGH 7.0 CVE-2015-5649 Cybozu Garoon 3.x through 3.7.5 and 4.x through 4.0.3 mishandles authentication requests, which allows remote authenticated users to conduct LDAP inj… Garoon Mitigation only Fix from $1,9502015-10-08 HIGH 7.8 CVE-2014-7266 Algorithmic complexity vulnerability in Cybozu Remote Service Manager through 2.3.0 and 3.x through 3.1.2 allows remote attackers to cause a denial o… Remote Service Manager Patch available Fix from $1,9502015-02-01 HIGH 9.0 CVE-2014-5314 Buffer overflow in Cybozu Office 9 and 10 before 10.1.0, Mailwise 4 and 5 before 5.1.4, and Dezie 8 before 8.1.1 allows remote authenticated users to… Office after 10.0.2 Fix from $1,9502014-11-24 HIGH 10.0 CVE-2014-1987 The CGI component in Cybozu Garoon 3.1.0 through 3.7 SP3 allows remote attackers to execute arbitrary commands via unspecified vectors. Garoon Mitigation only Fix from $1,9502014-07-20 HIGH 7.5 CVE-2014-1996 Cybozu Garoon 3.7 before SP4 allows remote authenticated users to bypass intended access restrictions, and execute arbitrary code or cause a denial o… Garoon Mitigation only Fix from $1,9502014-07-20 MEDIUM 6.0 CVE-2014-1989 Cybozu Garoon 3.0 through 3.7 SP3 allows remote authenticated users to bypass intended access restrictions and delete schedule information via unspec… Garoon Mitigation only Fix from $1,6002014-05-02 HIGH 7.8 CVE-2014-1983 Unspecified vulnerability in Cybozu Remote Service Manager through 2.3.0 and 3.x before 3.1.1 allows remote attackers to cause a denial of service (C… Remote Service Manager after 3.1.0 Fix from $1,9502014-04-19 MEDIUM 6.8 CVE-2014-1984 Session fixation vulnerability in the management screen in Cybozu Remote Service Manager through 2.3.0 and 3.x before 3.1.1 allows remote attackers t… Remote Service Manager after 3.1.0 Fix from $1,6002014-04-19 MEDIUM 6.5 CVE-2014-0821 SQL injection vulnerability in the download feature in Cybozu Garoon 2.x through 2.5.4 and 3.x through 3.7 SP3 allows remote authenticated users to e… Garoon Mitigation only Fix from $1,6002014-02-27 MEDIUM 6.5 CVE-2013-6930 SQL injection vulnerability in the page-navigation implementation in Cybozu Garoon 2.0.0 through 2.0.6, 2.1.0 through 2.1.3, 2.5.0 through 2.5.4, 3.0… Garoon Mitigation only Fix from $1,6002014-01-29 MEDIUM 6.5 CVE-2013-6931 SQL injection vulnerability in the API in Cybozu Garoon 3.7.x before 3.7.3 allows remote authenticated users to execute arbitrary SQL commands via un… Garoon Mitigation only Fix from $1,6002014-01-29 MEDIUM 6.5 CVE-2013-6929 SQL injection vulnerability in Cybozu Garoon 3.7 SP2 and earlier allows remote authenticated users to execute arbitrary SQL commands via crafted API … Garoon after 3.7 Fix from $1,6002013-12-28 MEDIUM 5.8 CVE-2013-6006 Cybozu Garoon 3.5 through 3.7 SP2 allows remote attackers to bypass Keitai authentication via a modified user ID in a request. Garoon Mitigation only Fix from $1,6002013-12-28 MEDIUM 6.8 CVE-2013-6004 Session fixation vulnerability in Cybozu Garoon before 3.7.2 allows remote attackers to hijack web sessions via unspecified vectors. Garoon after 3.7 Fix from $1,6002013-12-05 MEDIUM 6.5 CVE-2013-6001 SQL injection vulnerability in the Space function in Cybozu Garoon before 3.7 SP1 allows remote authenticated users to execute arbitrary SQL commands… Garoon after 3.7 Fix from $1,6002013-12-05 MEDIUM 5.0 CVE-2013-6002 The server in Cybozu Garoon before 3.7 SP1 allows remote attackers to cause a denial of service (CPU consumption) via unspecified vectors. Garoon after 3.7 Fix from $1,6002013-12-05 MEDIUM 5.8 CVE-2013-3656 Cybozu Office 9.1.0 and earlier does not properly manage sessions, which allows remote attackers to bypass authentication by leveraging knowledge of … Cybozu Office after 9.1.0 Fix from $1,6002013-07-20 MEDIUM 6.8 CVE-2013-3646 The Cybozu Live application before 2.0.1 for Android allows remote attackers to execute arbitrary Java methods, and obtain sensitive information or e… Cybozu Live after 2.0.0 Fix from $1,6002013-06-18 MEDIUM 6.8 CVE-2013-3647 The WebView class in the Cybozu Live application before 2.0.1 for Android allows attackers to execute arbitrary JavaScript code, and obtain sensitive… Cybozu Live after 2.0.0 Fix from $1,6002013-06-18 MEDIUM 6.8 CVE-2013-2305 Cross-site request forgery (CSRF) vulnerability in Cybozu Office before 8.1.6 and 9.x before 9.3.0, Cybozu Dezie before 8.0.7, and Cybozu Mailwise be… Cybozu Office after 8.0.6 Fix from $1,6002013-04-25 MEDIUM 6.8 CVE-2013-3269 Cross-site request forgery (CSRF) vulnerability in Cybozu Office before 8.1.6 and 9.x before 9.3.0 allows remote attackers to hijack the authenticati… Cybozu Office after 8 Fix from $1,6002013-04-25 MEDIUM 6.0 CVE-2013-0701 SQL injection vulnerability in Cybozu Garoon 2.5.0 through 3.5.3 allows remote authenticated users to execute arbitrary SQL commands by leveraging a … Garoon Mitigation only Fix from $1,6002013-02-14 HIGH 9.3 CVE-2012-4011 The Cybozu KUNAI application before 2.0.6 for Android allows remote attackers to execute arbitrary Java methods, and obtain sensitive information or … Kunai after 2.0.5 Fix from $1,9502012-09-08 MEDIUM 6.8 CVE-2012-4008 The Cybozu Live application 1.0.4 and earlier for Android allows remote attackers to execute arbitrary Java methods, and obtain sensitive information… Cybozu Live after 1.0.4 Fix from $1,6002012-08-31