CVE-2006-6705: Medium severity Soumu Koukyoumuke Soumu Workflow vulnerability
Multiple unspecified vulnerabilities in the template files in Soumu Workflow for Groupmax 01-00 through 01-01, Soumu Workflow 02-00 through 03-03, and Koukyoumuke Soumu Workflow 01-00 through 01-01 allow remote attackers to bypass authentication mechanisms on web pages via unknown vectors.
Affected Software
Event History
Frequently Asked Questions
Which deployments are affected?
Affected versions are Soumu Workflow for Groupmax 01-00 through 01-01, Soumu Workflow 02-00 through 03-03, and Koukyoumuke Soumu Workflow 01-00 through 01-01.
Can this be exploited remotely without valid credentials?
Yes. The reported impact is authentication bypass on web pages by remote attackers, and the supplied vector indicates network access with low attack complexity and no authentication required.
What component is implicated?
The vulnerabilities are in template files. The available information does not identify the specific template files or the request vectors used to bypass authentication.