CVE-2018-0528: Infoleak
Published Jun 26, 2018
·Updated
Cybozu Office 10.0.0 to 10.7.0 allows authenticated attackers to bypass authentication to view the schedules that are not permitted to access via unspecified vectors.
Affected Software
1 affected component
Cybozu Office>=10.0.0<=10.7.0
Event History
Jun 26, 2018
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2018-0528.
2
What is the severity of CVE-2018-0528?
The severity of CVE-2018-0528 is medium (4.3).
3
Which software versions are affected by CVE-2018-0528?
Cybozu Office versions 10.0.0 to 10.7.0 are affected by CVE-2018-0528.
4
How can authenticated attackers bypass authentication to view unauthorized schedules?
The specific vectors that allow authenticated attackers to bypass authentication and view unauthorized schedules is unspecified.
5
Where can I find more information about CVE-2018-0528?
You can find more information about CVE-2018-0528 at the following references: - [JVN Link](http://jvn.jp/en/jp/JVN51737843/index.html) - [Cybozu Support Article](https://support.cybozu.com/ja-jp/article/9812)