VYPR
Medium severity4.3NVD Advisory· Published Apr 28, 2017· Updated May 13, 2026

CVE-2017-2094

CVE-2017-2094

Description

Cybozu Garoon 3.0.0 to 4.2.3 allows remote authenticated attackers to bypass access restriction in Workflow and the "MultiReport" function to alter or delete information via unspecified vectors.

Affected products

29
  • Cybozu/Garoon28 versions
    cpe:2.3:a:cybozu:garoon:3.0.0:*:*:*:*:*:*:*+ 27 more
    • cpe:2.3:a:cybozu:garoon:3.0.0:*:*:*:*:*:*:*
    • cpe:2.3:a:cybozu:garoon:3.0.1:*:*:*:*:*:*:*
    • cpe:2.3:a:cybozu:garoon:3.0.2:*:*:*:*:*:*:*
    • cpe:2.3:a:cybozu:garoon:3.0.3:*:*:*:*:*:*:*
    • cpe:2.3:a:cybozu:garoon:3.1.0:*:*:*:*:*:*:*
    • cpe:2.3:a:cybozu:garoon:3.1.1:*:*:*:*:*:*:*
    • cpe:2.3:a:cybozu:garoon:3.1.2:*:*:*:*:*:*:*
    • cpe:2.3:a:cybozu:garoon:3.1.3:*:*:*:*:*:*:*
    • cpe:2.3:a:cybozu:garoon:3.5.0:*:*:*:*:*:*:*
    • cpe:2.3:a:cybozu:garoon:3.5.1:*:*:*:*:*:*:*
    • cpe:2.3:a:cybozu:garoon:3.5.2:*:*:*:*:*:*:*
    • cpe:2.3:a:cybozu:garoon:3.5.3:*:*:*:*:*:*:*
    • cpe:2.3:a:cybozu:garoon:3.5.4:*:*:*:*:*:*:*
    • cpe:2.3:a:cybozu:garoon:3.5.5:*:*:*:*:*:*:*
    • cpe:2.3:a:cybozu:garoon:3.7.0:*:*:*:*:*:*:*
    • cpe:2.3:a:cybozu:garoon:3.7.1:*:*:*:*:*:*:*
    • cpe:2.3:a:cybozu:garoon:3.7.2:*:*:*:*:*:*:*
    • cpe:2.3:a:cybozu:garoon:3.7.3:*:*:*:*:*:*:*
    • cpe:2.3:a:cybozu:garoon:3.7.4:*:*:*:*:*:*:*
    • cpe:2.3:a:cybozu:garoon:3.7.5:*:*:*:*:*:*:*
    • cpe:2.3:a:cybozu:garoon:4.0.0:*:*:*:*:*:*:*
    • cpe:2.3:a:cybozu:garoon:4.0.1:*:*:*:*:*:*:*
    • cpe:2.3:a:cybozu:garoon:4.0.2:*:*:*:*:*:*:*
    • cpe:2.3:a:cybozu:garoon:4.0.3:*:*:*:*:*:*:*
    • cpe:2.3:a:cybozu:garoon:4.2.0:*:*:*:*:*:*:*
    • cpe:2.3:a:cybozu:garoon:4.2.1:*:*:*:*:*:*:*
    • cpe:2.3:a:cybozu:garoon:4.2.2:*:*:*:*:*:*:*
    • cpe:2.3:a:cybozu:garoon:4.2.3:*:*:*:*:*:*:*
  • Cybozu, Inc./Cybozu Garoonv5
    Range: 3.0.0 to 4.2.3

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.