CVE-2011-2677

Cybozu Office before 8.0.0 allows remote authenticated users to bypass intended access restrictions and access sensitive information (time card and attendance) via unspecified vectors related to manipulation of a URL.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:cybozu:office:*:*:*:*:*:*:*:*
cpe:2.3:a:cybozu:office:6:*:*:*:*:*:*:*

History

21 Nov 2024, 01:28

Type Values Removed Values Added
References () http://cs.cybozu.co.jp/information/20111005notice01.php - () http://cs.cybozu.co.jp/information/20111005notice01.php -
References () http://jvn.jp/en/jp/JVN84838479/index.html - () http://jvn.jp/en/jp/JVN84838479/index.html -
References () http://jvndb.jvn.jp/ja/contents/2011/JVNDB-2011-000079.html - () http://jvndb.jvn.jp/ja/contents/2011/JVNDB-2011-000079.html -
References () http://osvdb.org/76124 - () http://osvdb.org/76124 -
References () http://secunia.com/advisories/46321 - Vendor Advisory () http://secunia.com/advisories/46321 - Vendor Advisory
References () http://www.securityfocus.com/bid/50015 - () http://www.securityfocus.com/bid/50015 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/70411 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/70411 -

Information

Published : 2011-10-21 18:55

Updated : 2024-11-21 01:28


NVD link : CVE-2011-2677

Mitre link : CVE-2011-2677

CVE.ORG link : CVE-2011-2677


JSON object : View

Products Affected

cybozu

  • office
CWE
CWE-264

Permissions, Privileges, and Access Controls