CVE Published: 28/08/2017 |
CVE Updated: 05/08/2024 |
CVE Year: 2017 Source: jpcert |
Vendor: Cybozu, Inc. |
Product: Cybozu Garoon Status : PUBLISHED
CVE-2017-2258 Description
Directory traversal vulnerability in Cybozu Garoon 4.2.4 to 4.2.5 allows an attacker to read arbitrary files via Garoon SOAP API "WorkflowHandleApplications".