Cybozu Dezie 8.0.0 to 8.1.1 allows remote attackers to bypass access restrictions to delete an arbitrary DBM (Cybozu Dezie proprietary format) file via unspecified vectors.
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
Link | Tags |
---|---|
https://jvn.jp/en/jp/JVN16781735/index.html | third party advisory vdb entry |
http://www.securityfocus.com/bid/94831 | third party advisory vdb entry |
https://support.cybozu.com/ja-jp/article/9741 | vendor advisory |