Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Improper input validation vulnerability in User Profile of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated attacker to alter the data of User Profile without the appropriate privilege.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cybozu Garoon 输入验证错误漏洞
Vulnerability Description
Cybozu Garoon是日本才望子(Cybozu)公司的一套门户型OA办公系统。该系统提供门户、E-mail、书签、日程安排、公告栏、文件管理等功能。 Cybozu Garoon 4.0.0版本至5.0.2版本存在输入验证错误漏洞,该漏洞源于User Profile中对用户提供的输入验证不足。通过身份验证的远程攻击者可利用该漏洞向应用程序传递专门设计的输入,并更改用户概要文件的数据。
CVSS Information
N/A
Vulnerability Type
N/A