CVE-2016-1193: Infoleak
Published Jun 25, 2016
·Updated
Cybozu Garoon 3.7 through 4.2 allows remote attackers to obtain sensitive email-reading information via unspecified vectors.
Affected Software
11 affected components
Cybozu Garoon=3.7.0
Cybozu Garoon=3.7.1
Cybozu Garoon=3.7.2
Cybozu Garoon=3.7.3
Cybozu Garoon=3.7.4
Cybozu Garoon=3.7.5
Cybozu Garoon=4.0.0
Cybozu Garoon=4.0.1
Cybozu Garoon=4.0.2
Cybozu Garoon=4.0.3
Cybozu Garoon=4.2.0
Event History
Jun 25, 2016
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-1193?
CVE-2016-1193 is classified as a medium-severity vulnerability that allows remote attackers access to sensitive email-reading information.
2
How do I fix CVE-2016-1193?
To fix CVE-2016-1193, you should upgrade Cybozu Garoon to a version that is not vulnerable, specifically versions 4.2.0 or later.
3
Which versions of Cybozu Garoon are affected by CVE-2016-1193?
CVE-2016-1193 affects Cybozu Garoon versions 3.7.0 to 4.2.0.
4
What information can be obtained through CVE-2016-1193 exploitation?
Exploitation of CVE-2016-1193 can lead to unauthorized access to sensitive email-reading information.
5
Is there any workaround for CVE-2016-1193 if I cannot update immediately?
Currently, there are no recommended workarounds for CVE-2016-1193, so updating is advised.