Lucene search

K
nvd[email protected]NVD:CVE-2015-5647
HistoryOct 12, 2015 - 10:59 a.m.

CVE-2015-5647

2015-10-1210:59:08
CWE-94
web.nvd.nist.gov
5

CVSS2

8.5

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:S/C:C/I:C/A:C

AI Score

7.3

Confidence

Low

EPSS

0.003

Percentile

69.3%

The RSS Reader component in Cybozu Garoon 3.x through 3.7.5 and 4.x through 4.0.3 allows remote authenticated users to execute arbitrary PHP code via unspecified vectors, aka CyVDB-866.

Affected configurations

Nvd
Node
cybozugaroonMatch3.0.0
OR
cybozugaroonMatch3.0.1
OR
cybozugaroonMatch3.0.2
OR
cybozugaroonMatch3.0.3
OR
cybozugaroonMatch3.1.0
OR
cybozugaroonMatch3.1.1
OR
cybozugaroonMatch3.1.2
OR
cybozugaroonMatch3.1.3
OR
cybozugaroonMatch3.5.0
OR
cybozugaroonMatch3.5.1
OR
cybozugaroonMatch3.5.2
OR
cybozugaroonMatch3.5.3
OR
cybozugaroonMatch3.5.4
OR
cybozugaroonMatch3.5.5
OR
cybozugaroonMatch3.7.0
OR
cybozugaroonMatch3.7.1
OR
cybozugaroonMatch3.7.2
OR
cybozugaroonMatch3.7.3
OR
cybozugaroonMatch3.7.4
OR
cybozugaroonMatch3.7.5
OR
cybozugaroonMatch4.0.0
OR
cybozugaroonMatch4.0.1
OR
cybozugaroonMatch4.0.2
OR
cybozugaroonMatch4.0.3
VendorProductVersionCPE
cybozugaroon3.0.0cpe:2.3:a:cybozu:garoon:3.0.0:*:*:*:*:*:*:*
cybozugaroon3.0.1cpe:2.3:a:cybozu:garoon:3.0.1:*:*:*:*:*:*:*
cybozugaroon3.0.2cpe:2.3:a:cybozu:garoon:3.0.2:*:*:*:*:*:*:*
cybozugaroon3.0.3cpe:2.3:a:cybozu:garoon:3.0.3:*:*:*:*:*:*:*
cybozugaroon3.1.0cpe:2.3:a:cybozu:garoon:3.1.0:*:*:*:*:*:*:*
cybozugaroon3.1.1cpe:2.3:a:cybozu:garoon:3.1.1:*:*:*:*:*:*:*
cybozugaroon3.1.2cpe:2.3:a:cybozu:garoon:3.1.2:*:*:*:*:*:*:*
cybozugaroon3.1.3cpe:2.3:a:cybozu:garoon:3.1.3:*:*:*:*:*:*:*
cybozugaroon3.5.0cpe:2.3:a:cybozu:garoon:3.5.0:*:*:*:*:*:*:*
cybozugaroon3.5.1cpe:2.3:a:cybozu:garoon:3.5.1:*:*:*:*:*:*:*
Rows per page:
1-10 of 241

CVSS2

8.5

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:S/C:C/I:C/A:C

AI Score

7.3

Confidence

Low

EPSS

0.003

Percentile

69.3%

Related for NVD:CVE-2015-5647