CVE-2015-5646

Published Oct 12, 2015

Last updated 9 years ago

Overview

Description
Cybozu Garoon 3.x through 3.7.5 and 4.x through 4.0.3 allows remote authenticated users to execute arbitrary PHP code via unspecified vectors, aka CyVDB-863 and CyVDB-867.
Source
vultures@jpcert.or.jp
NVD status
Analyzed

Risk scores

CVSS 2.0

Type
Primary
Base score
8.5
Impact score
10
Exploitability score
6.8
Vector string
AV:N/AC:M/Au:S/C:C/I:C/A:C

Weaknesses

nvd@nist.gov
CWE-94

Social media

Hype score
Not currently trending

Configurations