|
196981
|
5.4 |
MEDIUM
Network
|
cybozu
|
garoon
|
Cross-site scripting vulnerability in Bulletin of Cybozu Garoon 4.6.0 to 5.0.2 allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2021-20769
|
2024-11-21 14:47 |
2021-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196982
|
4.3 |
MEDIUM
Network
|
cybozu
|
garoon
|
Operational restrictions bypass vulnerability in Scheduler and MultiReport of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated attacker to delete the data of Scheduler and MultiReport witho…
|
NVD-CWE-Other
|
CVE-2021-20768
|
2024-11-21 14:47 |
2021-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196983
|
5.4 |
MEDIUM
Network
|
cybozu
|
garoon
|
Cross-site scripting vulnerability in Full Text Search of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2021-20767
|
2024-11-21 14:47 |
2021-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196984
|
6.1 |
MEDIUM
Network
|
cybozu
|
garoon
|
Cross-site scripting vulnerability in Message of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote attacker to inject an arbitrary script via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2021-20766
|
2024-11-21 14:47 |
2021-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196985
|
6.1 |
MEDIUM
Network
|
cybozu
|
garoon
|
Cross-site scripting vulnerability in Bulletin of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote attacker to inject an arbitrary script via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2021-20765
|
2024-11-21 14:47 |
2021-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196986
|
5.3 |
MEDIUM
Network
|
cybozu
|
garoon
|
Improper input validation vulnerability in Attaching Files of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote attacker to alter the data of Attaching Files.
|
CWE-20
Improper Input Validation
|
CVE-2021-20764
|
2024-11-21 14:47 |
2021-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196987
|
4.3 |
MEDIUM
Network
|
cybozu
|
garoon
|
Operational restrictions bypass vulnerability in Portal of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated attacker to obtain the data of Portal without the appropriate privilege.
|
NVD-CWE-Other
|
CVE-2021-20763
|
2024-11-21 14:47 |
2021-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196988
|
4.3 |
MEDIUM
Network
|
cybozu
|
garoon
|
Improper input validation vulnerability in E-mail of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated to alter the data of E-mail without the appropriate privilege.
|
CWE-20
Improper Input Validation
|
CVE-2021-20762
|
2024-11-21 14:47 |
2021-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196989
|
2.7 |
LOW
Network
|
cybozu
|
garoon
|
Improper input validation vulnerability in E-mail of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote attacker with an administrative privilege to alter the data of E-mail without the appropriate privile…
|
CWE-20
Improper Input Validation
|
CVE-2021-20761
|
2024-11-21 14:47 |
2021-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196990
|
4.3 |
MEDIUM
Network
|
cybozu
|
garoon
|
Improper input validation vulnerability in User Profile of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated attacker to alter the data of User Profile without the appropriate privilege.
|
CWE-20
Improper Input Validation
|
CVE-2021-20760
|
2024-11-21 14:47 |
2021-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|