CVE-2017-2115
https://notcve.org/view.php?id=CVE-2017-2115
Cybozu Office 10.0.0 to 10.5.0 allows remote authenticated attackers to bypass access restriction to obtain "customapp" information via unspecified vectors. Cybozu Office desde 10.0.0 a 10.5.0 permite a un atacante remoto autenticado sortear las restricciones de acceso para obtener información "customapp" a través de vectores no especificados. • http://jvn.jp/en/jp/JVN17535578/index.html http://www.securityfocus.com/bid/97717 https://support.cybozu.com/ja-jp/article/9737 • CWE-732: Incorrect Permission Assignment for Critical Resource •
CVE-2017-2109
https://notcve.org/view.php?id=CVE-2017-2109
Cybozu KUNAI for Android 3.0.4 to 3.0.5.1 allow remote attackers to obtain log information through a malicious Android application. Cybozu KUNAI para Android desde la versión 3.0.4 hasta la 3.0.5.1, permite a atacantes remotos obtener información del registro a través de una aplicación Android malintencionada. • http://jvn.jp/en/jp/JVN88745657/index.html http://www.securityfocus.com/bid/96844 https://support.cybozu.com/ja-jp/article/9836 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2016-1187
https://notcve.org/view.php?id=CVE-2016-1187
Cybozu KUNAI for iPhone 2.0.3 through 3.1.5 and for Android 2.1.2 through 3.0.4 does not verify SSL certificates. Cybozu KUNAI para iPhone 2.0.3 hasta la versión 3.1.5 y para Android 2.1.2 hasta la versión 3.0.4 no verifica certificados SSL. • http://jvn.jp/en/jp/JVN11994518/index.html http://jvndb.jvn.jp/en/contents/2016/JVNDB-2016-000060.html https://support.cybozu.com/ja-jp/article/9446 https://support.cybozu.com/ja-jp/article/9495 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2016-1186
https://notcve.org/view.php?id=CVE-2016-1186
Kintone mobile for Android 1.0.0 through 1.0.5 does not verify SSL server certificates. Kintone mobile para Android 1.0.0 hasta la versión 1.0.5 no verifica certificados SSL de servidor. • http://jvn.jp/en/jp/JVN91816422/index.html http://jvndb.jvn.jp/en/contents/2016/JVNDB-2016-000056.html http://www.securityfocus.com/bid/97976 https://support.cybozu.com/ja-jp/article/9480 • CWE-295: Improper Certificate Validation •
CVE-2016-1194
https://notcve.org/view.php?id=CVE-2016-1194
Cybozu Garoon before 4.2.1 allows remote attackers to cause a denial of service. Cybozu Garoon en versiones anteriores a 4.2.1 permite a atacantes remotos provocar una denegación de servicio. • http://jvn.jp/en/jp/JVN26298347/index.html http://jvndb.jvn.jp/en/contents/2016/JVNDB-2016-000080.html https://support.cybozu.com/ja-jp/article/8983 • CWE-399: Resource Management Errors •