Lucene search

K
cvelistJpcertCVELIST:CVE-2021-20758
HistoryAug 18, 2021 - 5:35 a.m.

CVE-2021-20758

2021-08-1805:35:57
jpcert
www.cve.org
8
cybozu garoon
csrf vulnerability
remote attacker

AI Score

8

Confidence

High

EPSS

0.001

Percentile

32.7%

Cross-site request forgery (CSRF) vulnerability in Message of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated attacker to hijack the authentication of administrators and perform an arbitrary operation via unspecified vectors.

CNA Affected

[
  {
    "product": "Cybozu Garoon",
    "vendor": "Cybozu, Inc.",
    "versions": [
      {
        "status": "affected",
        "version": "4.0.0 to 5.0.2"
      }
    ]
  }
]

AI Score

8

Confidence

High

EPSS

0.001

Percentile

32.7%

Related for CVELIST:CVE-2021-20758