CVE-2018-16178: High severity cybozu garoon vulnerability
Published Jan 9, 2019
·Updated
Cybozu Garoon 3.0.0 to 4.10.0 allows remote attackers to bypass access restriction to view information available only for a sign-on user via Single sign-on function.
Affected Software
1 affected component
Cybozu Garoon>=3.0.0<=4.10.0
Remediation
Patch Available
Event History
Jan 9, 2019
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-16178?
CVE-2018-16178 has a medium severity level due to its ability to allow unauthorized information access.
2
How do I fix CVE-2018-16178?
To fix CVE-2018-16178, update Cybozu Garoon to version 4.10.1 or later, which addresses this vulnerability.
3
What type of vulnerability is CVE-2018-16178?
CVE-2018-16178 is a security vulnerability that allows remote attackers to bypass access restrictions.
4
Who is affected by CVE-2018-16178?
Users of Cybozu Garoon versions 3.0.0 to 4.10.0 are affected by CVE-2018-16178.
5
What can attackers do with CVE-2018-16178?
Attackers can exploit CVE-2018-16178 to view information that should only be accessible to authenticated users.