First published: Thu Mar 18 2021(Updated: )
Improper access control vulnerability in Bulletin Board of Cybozu Office 10.0.0 to 10.8.4 allows an authenticated attacker to bypass access restriction and alter the data of Bulletin Board via unspecified vectors.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Cybozu Office | >=10.0.0<=10.8.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2021-20625.
The severity of CVE-2021-20625 is medium with a CVSS score of 4.3.
The affected software for CVE-2021-20625 is Cybozu Office versions 10.0.0 to 10.8.4.
The vulnerability in Bulletin Board of Cybozu Office allows an authenticated attacker to bypass access restriction and alter the data of the Bulletin Board.
To fix the vulnerability in Cybozu Office, update to a version higher than 10.8.4.