CVE-2020-5580: High severity cybozu garoon vulnerability
Published Jun 30, 2020
·Updated
Cybozu Garoon 4.0.0 to 5.0.1 allows remote authenticated attackers to bypass access restriction to view and/or alter Single sign-on settings via unspecified vectors.
Affected Software
1 affected component
Cybozu Garoon>=4.0.0<=5.0.1
Event History
Jun 30, 2020
CVE Published
via MITRE·10:20 AM
Data Sourced
via MITRE·10:20 AM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2020-5580?
CVE-2020-5580 is a vulnerability in Cybozu Garoon 4.0.0 to 5.0.1 that allows remote authenticated attackers to bypass access restriction to view and/or alter Single sign-on settings.
2
How can attackers exploit CVE-2020-5580?
Attackers can exploit CVE-2020-5580 by leveraging unspecified vectors to bypass access restrictions and manipulate Single sign-on settings.
3
What is the severity of CVE-2020-5580?
CVE-2020-5580 has a severity rating of 8.1 (high).
4
Which versions of Cybozu Garoon are affected by CVE-2020-5580?
Cybozu Garoon versions 4.0.0 to 5.0.1 are affected by CVE-2020-5580.
5
Is there a fix available for CVE-2020-5580?
Yes, a fix is available for CVE-2020-5580. Users should refer to the official Cybozu Garoon documentation for the appropriate patch or update.