CVE-2013-3656

Publication date

2013-07-18 01:00:00

Family

jpcert

State

PUBLISHED

Description

Cybozu Office 9.1.0 and earlier does not properly manage sessions, which allows remote attackers to bypass authentication by leveraging knowledge of a login URL.