Cross-Site Scripting Vulnerability in Cybozu Office by Cybozu
CVE-2021-20628
6.1MEDIUM
What is CVE-2021-20628?
A cross-site scripting vulnerability exists in the Address Book feature of Cybozu Office versions 10.0.0 through 10.8.4. This flaw allows remote attackers to inject arbitrary scripts via unspecified vectors, specifically affecting users utilizing Mozilla Firefox. The exploitation of this vulnerability could lead to unauthorized actions being initiated in the context of the affected user, making it crucial for administrators and users to apply appropriate security measures.
Affected Version(s)
Cybozu Office 10.0.0 to 10.8.4