CVE Vulnerabilities

CVE-2016-1189

Published: Jun 25, 2016 | Modified: Jun 27, 2016
CVSS 3.x
8.1
HIGH
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
CVSS 2.x
5.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

Cybozu Garoon 3.x and 4.x before 4.2.1 allows remote authenticated users to bypass intended restrictions on reading, creating, or modifying a portlet via unspecified vectors.

Affected Software

Name Vendor Start Version End Version
Garoon Cybozu 3.1.0 3.1.0
Garoon Cybozu 3.1.1 3.1.1
Garoon Cybozu 3.1.2 3.1.2
Garoon Cybozu 3.1.3 3.1.3
Garoon Cybozu 3.5.0 3.5.0
Garoon Cybozu 3.5.1 3.5.1
Garoon Cybozu 3.5.2 3.5.2
Garoon Cybozu 3.5.3 3.5.3
Garoon Cybozu 3.5.4 3.5.4
Garoon Cybozu 3.5.5 3.5.5
Garoon Cybozu 3.7.0 3.7.0
Garoon Cybozu 3.7.1 3.7.1
Garoon Cybozu 3.7.2 3.7.2
Garoon Cybozu 3.7.3 3.7.3
Garoon Cybozu 3.7.4 3.7.4
Garoon Cybozu 3.7.5 3.7.5
Garoon Cybozu 4.0.0 4.0.0
Garoon Cybozu 4.0.1 4.0.1
Garoon Cybozu 4.0.2 4.0.2
Garoon Cybozu 4.0.3 4.0.3
Garoon Cybozu 4.2.0 4.2.0

References