Vulnerabilities
Aggregated CVE / GHSA / KEV / OSV — filter by tag and category.
| ID | Title | |
|---|---|---|
| CVE-2017-2258 |
|
Path Traversal in path-traversal (CVE-2017-2258)
path traversal in path-traversal (CVE-2017-2258). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-2257 |
|
Cross-Site Scripting (XSS) in cybozu (CVE-2017-2257)
cross-site scripting in cybozu (CVE-2017-2257). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-2256 |
|
Cross-Site Scripting (XSS) in cybozu (CVE-2017-2256)
cross-site scripting in cybozu (CVE-2017-2256). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-2255 |
|
Cross-Site Scripting (XSS) in cybozu (CVE-2017-2255)
cross-site scripting in cybozu (CVE-2017-2255). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-2254 |
|
Vulnerability in dos (CVE-2017-2254)
vulnerability in dos (CVE-2017-2254). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-2146 |
|
Cross-Site Scripting (XSS) in cybozu (CVE-2017-2146)
cross-site scripting in cybozu (CVE-2017-2146). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-4907 |
|
Cybozu Garoon 3.0.0 to 4.2.2 allow remote attackers to obtain CSRF tokens via unspecified vectors.
Cybozu Garoon 3.0.0 to 4.2.2 allow remote attackers to obtain CSRF tokens via unspecified vectors.
|
| CVE-2016-7803 |
|
SQL Injection in sqli (CVE-2016-7803)
SQL injection in sqli (CVE-2016-7803). Successful exploitation can lead to full system takeover.
|
| CVE-2016-7802 |
|
Path Traversal in path-traversal (CVE-2016-7802)
path traversal in path-traversal (CVE-2016-7802). Confidential information can be exposed externally.
|
| CVE-2016-7801 |
|
Vulnerability in dos (CVE-2016-7801)
vulnerability in dos (CVE-2016-7801). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-4910 |
|
Vulnerability in cybozu (CVE-2016-4910)
vulnerability in cybozu (CVE-2016-4910). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-4909 |
|
Cross-Site Request Forgery (CSRF) in csrf (CVE-2016-4909)
vulnerability in csrf (CVE-2016-4909). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-4908 |
|
Vulnerability in cybozu (CVE-2016-4908)
vulnerability in cybozu (CVE-2016-4908). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-4906 |
|
Cross-Site Scripting (XSS) in cybozu (CVE-2016-4906)
cross-site scripting in cybozu (CVE-2016-4906). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-2094 |
|
Privilege Escalation in cybozu (CVE-2017-2094)
vulnerability in cybozu (CVE-2017-2094). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-2093 |
|
Information Disclosure in csrf (CVE-2017-2093)
vulnerability in csrf (CVE-2017-2093). Risk of unauthorized operations or information disclosure.
|
| CVE-2017-2092 |
|
Cross-Site Scripting (XSS) in cybozu (CVE-2017-2092)
cross-site scripting in cybozu (CVE-2017-2092). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-1194 |
|
Cybozu Garoon before 4.2.1 allows remote attackers to cause a denial of service.
Cybozu Garoon before 4.2.1 allows remote attackers to cause a denial of service.
|
| CVE-2016-1220 |
|
Cybozu Garoon before 4.2.2 does not properly restrict access.
Cybozu Garoon before 4.2.2 does not properly restrict access.
|
| CVE-2016-1218 |
|
SQL injection vulnerability in Cybozu Garoon before 4.2.2.
SQL injection vulnerability in Cybozu Garoon before 4.2.2.
|
| CVE-2016-1217 |
|
Cross-Site Scripting (XSS) in cybozu (CVE-2016-1217)
cross-site scripting in cybozu (CVE-2016-1217). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-1216 |
|
Cross-Site Scripting (XSS) in cybozu (CVE-2016-1216)
cross-site scripting in cybozu (CVE-2016-1216). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-1215 |
|
Cross-Site Scripting (XSS) in cybozu (CVE-2016-1215)
cross-site scripting in cybozu (CVE-2016-1215). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-1214 |
|
Cross-Site Scripting (XSS) in cybozu (CVE-2016-1214)
cross-site scripting in cybozu (CVE-2016-1214). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-1213 |
|
Open Redirect in cybozu (CVE-2016-1213)
vulnerability in cybozu (CVE-2016-1213). Risk of unauthorized operations or information disclosure.
|
| CVE-2016-1219 |
|
Authentication Bypass in cybozu (CVE-2016-1219)
authentication bypass in cybozu (CVE-2016-1219). Successful exploitation can lead to full system takeover.
|