CVE-2013-6006: Medium severity cybozu garoon vulnerability
Published Dec 28, 2013
·Updated
Cybozu Garoon 3.5 through 3.7 SP2 allows remote attackers to bypass Keitai authentication via a modified user ID in a request.
Affected Software
10 affected components
Cybozu Garoon=3.5
Cybozu Garoon=3.5-sp1
Cybozu Garoon=3.5-sp2
Cybozu Garoon=3.5-sp3
Cybozu Garoon=3.5-sp4
Cybozu Garoon=3.5-sp5
Cybozu Garoon=3.5.3
Cybozu Garoon=3.7
Cybozu Garoon=3.7-sp1
Cybozu Garoon=3.7-sp2
Event History
Dec 28, 2013
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-6006?
CVE-2013-6006 is classified as a medium severity vulnerability due to its potential to allow unauthorized access.
2
How do I fix CVE-2013-6006?
To fix CVE-2013-6006, upgrade Cybozu Garoon to version 3.7 SP3 or later.
3
What versions of Cybozu Garoon are affected by CVE-2013-6006?
CVE-2013-6006 affects Cybozu Garoon versions 3.5 through 3.7 SP2.
4
What type of attack does CVE-2013-6006 enable?
CVE-2013-6006 enables remote attackers to bypass Keitai authentication.
5
Is CVE-2013-6006 easily exploitable?
Yes, CVE-2013-6006 can be easily exploited by modifying the user ID in a request.