CVE-2011-1333

Publication date

2011-06-29 17:00:00

Family

jpcert

State

PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in Cybozu Office 6 and Cybozu Garoon 2.0.0 through 2.1.3 allows remote attackers to inject arbitrary web script or HTML via vectors related to "downloading graphic files from the bulletin board system."