Insertion of sensitive information into sent data issue exists in Cybozu Garoon 5.5.0 to 6.0.0, which may allow a user who can log in to the product to view the data of Scheduler.
Metrics
Affected Vendors & Products
References
History
Thu, 21 Nov 2024 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-922 | |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: jpcert
Published: 2024-06-11T04:27:07.608Z
Updated: 2024-11-21T19:00:13.374Z
Reserved: 2024-04-03T09:14:19.135Z
Link: CVE-2024-31404

Updated: 2024-08-02T01:52:56.710Z

Status : Awaiting Analysis
Published: 2024-06-11T05:15:53.463
Modified: 2024-11-21T19:15:08.460
Link: CVE-2024-31404

No data.