CVE Vulnerabilities

CVE-2015-8486

Published: Feb 17, 2016 | Modified: Feb 22, 2016
CVSS 3.x
5.4
MEDIUM
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:L
CVSS 2.x
5.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

Cybozu Office 9.9.0 through 10.3.0 allows remote authenticated users to bypass intended access restrictions and read arbitrary report titles via unspecified vectors, a different vulnerability than CVE-2015-8484, CVE-2015-8485, and CVE-2016-1152.

Affected Software

Name Vendor Start Version End Version
Office Cybozu 9.9.0 (including) 9.9.0 (including)
Office Cybozu 10.0.0 (including) 10.0.0 (including)
Office Cybozu 10.0.1 (including) 10.0.1 (including)
Office Cybozu 10.0.2 (including) 10.0.2 (including)
Office Cybozu 10.1.0 (including) 10.1.0 (including)
Office Cybozu 10.1.2 (including) 10.1.2 (including)
Office Cybozu 10.2.0 (including) 10.2.0 (including)
Office Cybozu 10.3.0 (including) 10.3.0 (including)

References