Cross-site scripting vulnerability in Address Book of Cybozu Office 10.0.0 to 10.8.4 allows remote attackers to inject an arbitrary script via unspecified vectors. Note that this vulnerability occurs only when using Mozilla Firefox.
References
Link | Resource |
---|---|
https://jvn.jp/en/jp/JVN45797538/index.html | Third Party Advisory |
https://kb.cybozu.support/article/36868/ | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
No history.
Information
Published : 2021-03-18 01:15
Updated : 2021-03-23 14:28
NVD link : CVE-2021-20628
Mitre link : CVE-2021-20628
CVE.ORG link : CVE-2021-20628
JSON object : View
Products Affected
mozilla
- firefox
cybozu
- office
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')