CVE-2018-0530: SQL Injection
Published Apr 16, 2018
·Updated
SQL injection vulnerability in the Cybozu Garoon 3.5.0 to 4.2.6 allows remote authenticated attackers to execute arbitrary SQL commands via unspecified vectors.
Affected Software
1 affected component
Cybozu Garoon>=3.5.0<=4.2.6
Event History
Apr 16, 2018
CVE Published
via MITRE·01:00 PM
Data Sourced
via MITRE·01:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-0530?
CVE-2018-0530 has been classified as a medium severity vulnerability due to its potential for exploitation.
2
How do I fix CVE-2018-0530?
To fix CVE-2018-0530, upgrade your Cybozu Garoon software to version 4.2.7 or later.
3
Who is affected by CVE-2018-0530?
CVE-2018-0530 affects users of Cybozu Garoon versions 3.5.0 through 4.2.6.
4
What type of vulnerability is CVE-2018-0530?
CVE-2018-0530 is an SQL injection vulnerability that allows remote authenticated attackers to execute arbitrary SQL commands.
5
Can CVE-2018-0530 be exploited remotely?
Yes, CVE-2018-0530 can be exploited remotely by authenticated attackers.