CVE-2021-20632: Medium severity cybozu office vulnerability
Published Mar 18, 2021
·Updated
Improper access control vulnerability in Bulletin Board of Cybozu Office 10.0.0 to 10.8.4 allows authenticated attackers to bypass access restriction and obtain the data of Bulletin Board via unspecified vectors.
Affected Software
1 affected component
Cybozu Office>=10.0.0<=10.8.4
Event History
Mar 18, 2021
CVE Published
via MITRE·12:56 AM
Data Sourced
via MITRE·12:56 AM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2021-20632?
CVE-2021-20632 is an improper access control vulnerability in Bulletin Board of Cybozu Office 10.0.0 to 10.8.4.
2
What is the severity of CVE-2021-20632?
The severity of CVE-2021-20632 is medium with a CVSS score of 4.3.
3
How can an attacker exploit CVE-2021-20632?
Authenticated attackers can exploit CVE-2021-20632 to bypass access restrictions and obtain data from the Bulletin Board of Cybozu Office.
4
Which versions of Cybozu Office are affected by CVE-2021-20632?
Cybozu Office versions 10.0.0 to 10.8.4 are affected by CVE-2021-20632.
5
Is there a fix for CVE-2021-20632?
Yes, a fix for CVE-2021-20632 is available. Please refer to the official Cybozu Office website for more information.