CVE Vulnerabilities

CVE-2014-0817

Published: Feb 27, 2014 | Modified: Feb 27, 2014
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.9 MEDIUM
AV:N/AC:M/Au:S/C:P/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

Cybozu Garoon 2.x through 2.5.4 and 3.x through 3.7 SP3 does not properly manage sessions, which allows remote authenticated users to impersonate arbitrary users via unspecified vectors.

Affected Software

Name Vendor Start Version End Version
Garoon Cybozu 2.0-sp1 (including) 2.0-sp1 (including)
Garoon Cybozu 2.0-sp2 (including) 2.0-sp2 (including)
Garoon Cybozu 2.0-sp3 (including) 2.0-sp3 (including)
Garoon Cybozu 2.0-sp4 (including) 2.0-sp4 (including)
Garoon Cybozu 2.0-sp5 (including) 2.0-sp5 (including)
Garoon Cybozu 2.0-sp6 (including) 2.0-sp6 (including)
Garoon Cybozu 2.0.0 (including) 2.0.0 (including)
Garoon Cybozu 2.0.1 (including) 2.0.1 (including)
Garoon Cybozu 2.0.2 (including) 2.0.2 (including)
Garoon Cybozu 2.0.3 (including) 2.0.3 (including)
Garoon Cybozu 2.0.4 (including) 2.0.4 (including)
Garoon Cybozu 2.0.5 (including) 2.0.5 (including)
Garoon Cybozu 2.0.6 (including) 2.0.6 (including)
Garoon Cybozu 2.1 (including) 2.1 (including)
Garoon Cybozu 2.1-sp1 (including) 2.1-sp1 (including)
Garoon Cybozu 2.1-sp2 (including) 2.1-sp2 (including)
Garoon Cybozu 2.1-sp3 (including) 2.1-sp3 (including)
Garoon Cybozu 2.1.0 (including) 2.1.0 (including)
Garoon Cybozu 2.1.1 (including) 2.1.1 (including)
Garoon Cybozu 2.1.2 (including) 2.1.2 (including)
Garoon Cybozu 2.1.3 (including) 2.1.3 (including)
Garoon Cybozu 2.5 (including) 2.5 (including)
Garoon Cybozu 2.5-sp1 (including) 2.5-sp1 (including)
Garoon Cybozu 2.5-sp2 (including) 2.5-sp2 (including)
Garoon Cybozu 2.5-sp3 (including) 2.5-sp3 (including)
Garoon Cybozu 2.5-sp4 (including) 2.5-sp4 (including)
Garoon Cybozu 2.5.0 (including) 2.5.0 (including)
Garoon Cybozu 2.5.1 (including) 2.5.1 (including)
Garoon Cybozu 2.5.2 (including) 2.5.2 (including)
Garoon Cybozu 2.5.3 (including) 2.5.3 (including)
Garoon Cybozu 2.5.4 (including) 2.5.4 (including)

References