CVE-2021-20629: XSS
Published Mar 18, 2021
·Updated
Cross-site scripting vulnerability in E-mail of Cybozu Office 10.0.0 to 10.8.4 allows remote attackers to inject an arbitrary script via unspecified vectors.
Affected Software
1 affected component
Cybozu Office>=10.0.0<=10.8.4
Event History
Mar 18, 2021
CVE Published
via MITRE·12:56 AM
Data Sourced
via MITRE·12:56 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this cross-site scripting vulnerability?
The vulnerability ID is CVE-2021-20629.
2
What is the severity of CVE-2021-20629?
The severity of CVE-2021-20629 is medium.
3
Which versions of Cybozu Office are affected by CVE-2021-20629?
Cybozu Office versions 10.0.0 to 10.8.4 are affected by CVE-2021-20629.
4
How can remote attackers exploit CVE-2021-20629?
Remote attackers can exploit CVE-2021-20629 by injecting an arbitrary script via unspecified vectors in the E-mail functionality of Cybozu Office.
5
Where can I find more information about CVE-2021-20629?
You can find more information about CVE-2021-20629 at the following references: (Reference 1), (Reference 2).