CVE-2016-4910: Medium severity cybozu garoon vulnerability
Cybozu Garoon 3.0.0 to 4.2.2 allows remote authenticated attackers to bypass access restriction to delete other operational administrators' MultiReport filters via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-4910?
CVE-2016-4910 is rated as a critical vulnerability that allows remote authenticated attackers to manipulate MultiReport filters.
How do I fix CVE-2016-4910?
To resolve CVE-2016-4910, upgrade your Cybozu Garoon installation to version 4.2.3 or later.
What versions are affected by CVE-2016-4910?
CVE-2016-4910 affects Cybozu Garoon versions from 3.0.0 to 4.2.2.
What is the impact of CVE-2016-4910?
The vulnerability allows attackers to delete MultiReport filters belonging to other operational administrators, leading to unauthorized data manipulation.
Who is at risk for CVE-2016-4910?
Organizations using affected versions of Cybozu Garoon are at risk, particularly those with multiple operational administrators.