Open redirect vulnerability in Cybozu Garoon 3.x and 4.x before 4.2.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a crafted URL.
Credit:
The original article can be found at: http://jvn.jp/en/jp/JVN32218514/index.html
Vulnerable Systems:
* Cybozu Garoon 3.0.0
* Cybozu Garoon 3.0.1
* Cybozu Garoon 3.0.2
* Cybozu Garoon 3.0.3
* Cybozu Garoon 3.1.0
* Cybozu Garoon 3.1.1
* Cybozu Garoon 3.1.2
* Cybozu Garoon 3.1.3
* Cybozu Garoon 3.5.0
* Cybozu Garoon 3.5.1
* Cybozu Garoon 3.5.2
* Cybozu Garoon 3.5.3
* Cybozu Garoon 3.5.4
* Cybozu Garoon 3.5.5
* Cybozu Garoon 3.7.0
* Cybozu Garoon 3.7.1
* Cybozu Garoon 3.7.2
* Cybozu Garoon 3.7.3
* Cybozu Garoon 3.7.4
* Cybozu Garoon 3.7.5
* Cybozu Garoon 4.0.0
* Cybozu Garoon 4.0.1
* Cybozu Garoon 4.0.2
* Cybozu Garoon 4.0.3
* Cybozu Garoon 4.2.0
Cybozu Garoon is a groupware. Cybozu Garoon contains an open redirect vulnerability.
CVE Information:
CVE-2016-1195
Disclosure Timeline:
Publish Date : 2016-06-19
Last Update Date : 2016-06-20
Please enable JavaScript to view the comments powered by Disqus.
blog comments powered by