CVE-2015-8483: High severity cybozu office vulnerability
Published Feb 17, 2016
·Updated
Open redirect vulnerability in Cybozu Office 10.2.0 through 10.3.0 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a crafted URL.
Affected Software
15 affected components
Cybozu Office=9.0
Cybozu Office=9.1.0
Cybozu Office=9.2.0
Cybozu Office=9.2.1
Cybozu Office=9.3.0
Cybozu Office=9.3.1
Cybozu Office=9.3.2
Cybozu Office=9.9.0
Cybozu Office=10.0.0
Cybozu Office=10.0.1
Cybozu Office=10.0.2
Cybozu Office=10.1.0
Cybozu Office=10.1.2
Cybozu Office=10.2.0
Cybozu Office=10.3.0
Event History
Feb 17, 2016
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-8483?
CVE-2015-8483 has a medium severity rating as it allows remote attackers to redirect users.
2
How do I fix CVE-2015-8483?
To fix CVE-2015-8483, upgrade to Cybozu Office version 10.4.0 or later.
3
What versions of Cybozu Office are affected by CVE-2015-8483?
CVE-2015-8483 affects Cybozu Office versions 10.2.0 through 10.3.0 and several prior versions.
4
What type of vulnerability is CVE-2015-8483?
CVE-2015-8483 is classified as an open redirect vulnerability.
5
What are the potential impacts of CVE-2015-8483?
The potential impacts of CVE-2015-8483 include phishing attacks and the risk of users being redirected to malicious websites.