CVE-2013-6930 Information

Description

SQL injection vulnerability in the page-navigation implementation in Cybozu Garoon 2.0.0 through 2.0.6 2.1.0 through 2.1.3 2.5.0 through 2.5.4 3.0.0 through 3.0.3 3.5.0 through 3.5.5 and 3.7.x before 3.7.3 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors a different vulnerability than CVE-2013-6929.

Reference

http://cs.cybozu.co.jp/information/20140127up02.php http://jvn.jp/en/jp/JVN91153528/374951/index.html http://jvn.jp/en/jp/JVN91153528/index.html http://jvndb.jvn.jp/jvndb/JVNDB-2014-000010 https://support.cybozu.com/ja-jp/article/7886

Share on: