PT-2019-17872 · Cybozu · Cybozu Garoon
Published
2019-05-17
·
Updated
2019-05-20
·
CVE-2019-5931
CVSS v3.1
8.7
High
| Vector | AV:N/AC:L/PR:H/UI:N/S:C/C:N/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Cybozu Garoon versions 4.0.0 through 4.6.3
Description
The issue allows authenticated attackers to alter information with privileges by invoking the installer via unspecified vectors.
Recommendations
For Cybozu Garoon versions 4.0.0 through 4.6.3, update to a version that contains a fix for this issue to prevent authenticated attackers from altering information with privileges.
Fix
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Cybozu Garoon