CVE-2024-31400: Medium severity cybozu garoon vulnerability
Published Jun 11, 2024
·Updated
Insertion of sensitive information into sent data issue exists in Cybozu Garoon 5.0.0 to 5.15.0. If this vulnerability is exploited, unintended data may be left in forwarded mail.
Affected Software
2 affected components
Cybozu Garoon>=5.0.0<=5.15.0
Cybozu Garoon>=5.5.0<6.0.0
Event History
Jun 11, 2024
CVE Published
via MITRE·04:26 AM
Data Sourced
via MITRE·04:26 AM
DescriptionWeakness
Data Sourced
via NVD·05:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-31400?
CVE-2024-31400 is considered a medium severity vulnerability due to the potential exposure of sensitive information in forwarded emails.
2
How do I fix CVE-2024-31400?
To mitigate CVE-2024-31400, upgrade your Cybozu Garoon software to version 5.15.1 or later.
3
What is the impact of CVE-2024-31400 if exploited?
Exploitation of CVE-2024-31400 may result in unintended sensitive data being included in forwarded emails.
4
Which versions of Cybozu Garoon are affected by CVE-2024-31400?
CVE-2024-31400 affects Cybozu Garoon versions 5.0.0 to 5.15.0.
5
Is there any workaround for CVE-2024-31400?
There is no official workaround for CVE-2024-31400; the only recommendation is to upgrade to a secure version.