Medium severity5.4NVD Advisory· Published Apr 28, 2017· Updated May 13, 2026
CVE-2017-2114
CVE-2017-2114
Description
Cross-site scripting vulnerability in Cybozu Office 10.0.0 to 10.5.0 allows remote authenticated attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected products
7cpe:2.3:a:cybozu:office:10.1.0:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:a:cybozu:office:10.1.0:*:*:*:*:*:*:*
- cpe:2.3:a:cybozu:office:10.1.2:*:*:*:*:*:*:*
- cpe:2.3:a:cybozu:office:10.2.0:*:*:*:*:*:*:*
- cpe:2.3:a:cybozu:office:10.3.0:*:*:*:*:*:*:*
- cpe:2.3:a:cybozu:office:10.4.0:*:*:*:*:*:*:*
- cpe:2.3:a:cybozu:office:10.5.0:*:*:*:*:*:*:*
- Cybozu, Inc./Cybozu Officev5Range: 10.0.0 to 10.5.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- jvn.jp/en/jp/JVN17535578/index.htmlnvdThird Party AdvisoryVDB Entry
- support.cybozu.com/ja-jp/article/9738nvdThird Party AdvisoryVDB Entry
- www.securityfocus.com/bid/97717nvd
News mentions
0No linked articles in our index yet.