Unrated severityNVD Advisory· Published Dec 5, 2013· Updated Jun 17, 2026
CVE-2013-6912
CVE-2013-6912
Description
Cross-site scripting (XSS) vulnerability in a calendar component in Cybozu Garoon before 3.7.2, when Internet Explorer 6 through 9 is used, allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
32cpe:2.3:a:cybozu:garoon:2.0:sp1:*:*:*:*:*:*+ 31 more
- cpe:2.3:a:cybozu:garoon:2.0:sp1:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:2.0:sp2:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:2.0:sp3:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:2.0:sp4:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:2.0:sp5:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:2.0:sp6:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:2.1:*:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:2.1:sp1:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:2.1:sp2:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:2.1:sp3:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:2.5:*:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:2.5:sp1:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:2.5:sp2:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:2.5:sp3:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:2.5:sp4:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:3.0:*:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:3.0:sp1:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:3.0:sp2:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:3.0:sp3:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:3.1:*:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:3.1:sp1:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:3.1:sp2:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:3.1:sp3:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:3.5:*:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:3.5:sp1:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:3.5:sp2:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:3.5:sp3:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:3.5:sp4:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:3.5:sp5:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:3.7:*:*:*:*:*:*:*
- cpe:2.3:a:cybozu:garoon:*:sp1:*:*:*:*:*:*range: <=3.7
- (no CPE)range: <3.7.2
Patches
Vulnerability mechanics
References
5News mentions
0No linked articles in our index yet.