PT-2023-12887 · Cybozu · Cybozu Remote Service

Published

2023-08-03

·

Updated

2023-08-08

·

CVE-2022-26838

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Cybozu Remote Service version 3.1.2
Description The issue is a path traversal vulnerability in the Importing Mobile Device Data component, allowing a remote authenticated attacker to cause a denial-of-service (DoS) condition.
Recommendations For Cybozu Remote Service version 3.1.2, update to a version that fixes the path traversal vulnerability in the Importing Mobile Device Data component to prevent a remote authenticated attacker from causing a denial-of-service (DoS) condition.

Fix

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2022-26838

Affected Products

Cybozu Remote Service