Arbitrary Web Script Injection Vulnerability in Cybozu Garoon's Memo Rich Text Function

Arbitrary Web Script Injection Vulnerability in Cybozu Garoon's Memo Rich Text Function

CVE-2017-2256 · LOW Severity

AV:N/AC:M/AU:S/C:N/I:P/A:N

Cross-site scripting vulnerability in Cybozu Garoon 3.0.0 to 4.2.5 allows an attacker to inject arbitrary web script or HTML via "Rich text" function of the application "Memo".

Learn more about our Web App Pen Testing.