CVE-2016-4866

Publication date

2017-04-17 15:00:00

Family

jpcert

State

PUBLISHED

Description

Cross-site scripting vulnerability in Cybozu Office 9.0.0 to 10.4.0 allows attackers with administrator rights to inject arbitrary web script or HTML via the Project function.