High severity8.8NVD Advisory· Published Feb 17, 2016· Updated May 6, 2026
CVE-2016-1151
CVE-2016-1151
Description
Multiple cross-site request forgery (CSRF) vulnerabilities in Cybozu Office 9.9.0 through 10.3.0 allow remote attackers to hijack the authentication of arbitrary users.
Affected products
8cpe:2.3:a:cybozu:office:10.0.0:*:*:*:*:*:*:*+ 7 more
- cpe:2.3:a:cybozu:office:10.0.0:*:*:*:*:*:*:*
- cpe:2.3:a:cybozu:office:10.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:cybozu:office:10.0.2:*:*:*:*:*:*:*
- cpe:2.3:a:cybozu:office:10.1.0:*:*:*:*:*:*:*
- cpe:2.3:a:cybozu:office:10.1.2:*:*:*:*:*:*:*
- cpe:2.3:a:cybozu:office:10.2.0:*:*:*:*:*:*:*
- cpe:2.3:a:cybozu:office:10.3.0:*:*:*:*:*:*:*
- cpe:2.3:a:cybozu:office:9.9.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- jvn.jp/en/jp/JVN64209269/index.htmlnvdVendor Advisory
- jvndb.jvn.jp/jvndb/JVNDB-2016-000024nvdVendor Advisory
- cs.cybozu.co.jp/2016/006111.htmlnvdVendor Advisory
News mentions
0No linked articles in our index yet.