CVE-2017-2095: Medium severity cybozu garoon vulnerability
Published Apr 28, 2017
·Updated
Cybozu Garoon 3.0.0 to 4.2.3 allows remote authenticated attackers to bypass access restriction in the mail function leading to an alteration of the order of mail folders via unspecified vectors.
Affected Software
28 affected components
Cybozu Garoon=3.0.0
Cybozu Garoon=3.0.1
Cybozu Garoon=3.0.2
Cybozu Garoon=3.0.3
Cybozu Garoon=3.1.0
Cybozu Garoon=3.1.1
Cybozu Garoon=3.1.2
Cybozu Garoon=3.1.3
Cybozu Garoon=3.5.0
Cybozu Garoon=3.5.1
Cybozu Garoon=3.5.2
Cybozu Garoon=3.5.3
Cybozu Garoon=3.5.4
Cybozu Garoon=3.5.5
Cybozu Garoon=3.7.0
Cybozu Garoon=3.7.1
Cybozu Garoon=3.7.2
Cybozu Garoon=3.7.3
Cybozu Garoon=3.7.4
Cybozu Garoon=3.7.5
Cybozu Garoon=4.0.0
Cybozu Garoon=4.0.1
Cybozu Garoon=4.0.2
Cybozu Garoon=4.0.3
Cybozu Garoon=4.2.0
Cybozu Garoon=4.2.1
Cybozu Garoon=4.2.2
Cybozu Garoon=4.2.3
Event History
Apr 28, 2017
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-2095?
CVE-2017-2095 is considered a medium severity vulnerability due to its potential impact on user data and access controls.
2
How do I fix CVE-2017-2095?
To fix CVE-2017-2095, update the Cybozu Garoon application to version 4.2.4 or later.
3
What versions are affected by CVE-2017-2095?
CVE-2017-2095 affects Cybozu Garoon versions from 3.0.0 to 4.2.3.
4
What type of attack does CVE-2017-2095 enable?
CVE-2017-2095 enables remote authenticated attackers to bypass access restrictions in the mail function.
5
Can CVE-2017-2095 affect my email functionality?
Yes, CVE-2017-2095 can alter the order of mail folders, potentially disrupting your email functionality.