First published: Fri May 17 2019(Updated: )
Cybozu Garoon 4.0.0 to 4.10.1 allows remote authenticated attackers to bypass access restriction alter the contents of application 'Address' without modify privileges via the application 'Address'.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Cybozu Garoon | >=4.0.0<=4.10.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-5944 has a medium severity rating due to its potential for remote exploitation by authenticated attackers.
To fix CVE-2019-5944, upgrade Cybozu Garoon to a version higher than 4.10.1.
CVE-2019-5944 affects Cybozu Garoon versions 4.0.0 to 4.10.1.
Yes, CVE-2019-5944 can be exploited remotely by authenticated users.
CVE-2019-5944 is associated with unauthorized access and content modification in the 'Address' application.