ZeroHour

CVE-2019-5935

CVSS 3.0
4.3 medium
EPSS
1%p64
Published
()
Modified
Description

Cybozu Garoon 4.0.0 to 4.10.1 allows remote authenticated attackers to bypass access restriction to change user information without access privileges via the Item function of User Information.

Vendors
cybozu
Products
garoon
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N

In the news

No ingested article mentions this CVE yet.