HTTP Header Injection Vulnerability in Cybozu Office
CVE-2022-32453
6.5MEDIUM
What is CVE-2022-32453?
An HTTP header injection vulnerability exists in Cybozu Office versions 10.0.0 through 10.8.5, potentially allowing a remote attacker to manipulate or retrieve data through crafted requests. This flaw arises from insufficient validation of HTTP headers, which could lead to unauthorized information exposure or data modification. Organizations using affected versions of Cybozu Office should apply available security patches promptly to mitigate risks.
Affected Version(s)
Cybozu Office 10.0.0 to 10.8.5