Lucene search

K
cvelistJpcertCVELIST:CVE-2013-2305
HistoryApr 25, 2013 - 10:00 a.m.

CVE-2013-2305

2013-04-2510:00:00
jpcert
www.cve.org
5
cross-site request forgery
cybozu office
cybozu dezie
cybozu mailwise
remote attackers
hijack authentication
change passwords

AI Score

7.1

Confidence

Low

EPSS

0.002

Percentile

53.0%

Cross-site request forgery (CSRF) vulnerability in Cybozu Office before 8.1.6 and 9.x before 9.3.0, Cybozu Dezie before 8.0.7, and Cybozu Mailwise before 5.0.4 allows remote attackers to hijack the authentication of arbitrary users for requests that change passwords.

AI Score

7.1

Confidence

Low

EPSS

0.002

Percentile

53.0%

Related for CVELIST:CVE-2013-2305