ZeroHour

CVE-2016-1196

CVSS 3.0
4.3 medium
EPSS
1%p62
Published
()
Modified
Description

Cybozu Garoon 3.x and 4.x before 4.2.1 allows remote authenticated users to bypass intended access restrictions and obtain sensitive Address Book information via an API call, a different vulnerability than CVE-2015-7776.

Vendors
cybozu
Products
garoon
Weakness
CWE-200, CWE-264
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.