CVE-2015-7795: XSS
Cross-site scripting (XSS) vulnerability in Cybozu Office 9.0.0 through 10.3.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2015-7796, CVE-2015-7797, CVE-2015-7798, CVE-2016-1149, and CVE-2016-1150.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability identified by CVE-2015-7795?
CVE-2015-7795 is a cross-site scripting (XSS) vulnerability in Cybozu Office that allows remote attackers to inject arbitrary web scripts or HTML.
What versions of Cybozu Office are affected by CVE-2015-7795?
CVE-2015-7795 affects Cybozu Office versions 9.0.0 to 10.3.0.
How do I fix CVE-2015-7795?
To fix CVE-2015-7795, upgrade to a version of Cybozu Office that is not vulnerable, specifically version 10.4.0 or later.
What type of attack does CVE-2015-7795 enable?
CVE-2015-7795 enables attackers to perform cross-site scripting (XSS) attacks, potentially compromising the security of affected users.
Is CVE-2015-7795 related to other vulnerabilities?
Yes, CVE-2015-7795 is different from several other vulnerabilities like CVE-2015-7796, CVE-2015-7797, CVE-2015-7798, CVE-2016-1149, and CVE-2016-1150.