ZeroHour

CVE-2017-2258

CVSS 3.0
4.3 medium
EPSS
1%p69
Published
()
Modified
Description

Directory traversal vulnerability in Cybozu Garoon 4.2.4 to 4.2.5 allows an attacker to read arbitrary files via Garoon SOAP API "WorkflowHandleApplications".

Vendors
cybozu
Products
garoon
Weakness
CWE-22
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.