CVE-2022-30602: High severity cybozu garoon vulnerability
Operation restriction bypass in multiple applications of Cybozu Garoon 4.0.0 to 5.9.1 allows a remote authenticated attacker to alter the file information and/or delete the files.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-30602?
CVE-2022-30602 is a vulnerability that allows a remote authenticated attacker to alter file information and/or delete files in multiple applications of Cybozu Garoon 4.0.0 to 5.9.1.
How severe is CVE-2022-30602?
CVE-2022-30602 has a severity rating of 8.1, which is considered high.
Which software versions are affected by CVE-2022-30602?
Versions 4.0.0 to 5.9.1 of Cybozu Garoon are affected by CVE-2022-30602.
How can an attacker exploit CVE-2022-30602?
A remote authenticated attacker can exploit CVE-2022-30602 to bypass operation restrictions, allowing them to alter file information and/or delete files.
Is there a fix available for CVE-2022-30602?
To mitigate CVE-2022-30602, it is recommended to update Cybozu Garoon to a version beyond 5.9.1 or apply the vendor-provided patches.