First published: Sun Jul 20 2014(Updated: )
Cybozu Garoon 3.7 before SP4 allows remote authenticated users to bypass intended access restrictions, and execute arbitrary code or cause a denial of service, via an API call.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Cybozu Garoon | =3.7-sp1 | |
Cybozu Garoon | =3.7-sp2 | |
Cybozu Garoon | =3.7-sp3 | |
Cybozu Garoon | =3.7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.