RSS   Vulnerabilities for 'Kunai'   RSS

2017-07-07
 
CVE-2017-2172

 

 
Cross-site scripting vulnerability in Cybozu KUNAI for Android 3.0.0 to 3.0.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

 
2017-04-28
 
CVE-2017-2109

 

 
Cybozu KUNAI for Android 3.0.4 to 3.0.5.1 allow remote attackers to obtain log information through a malicious Android application.

 
2017-04-21
 
CVE-2016-1187

 

 
Cybozu KUNAI for iPhone 2.0.3 through 3.1.5 and for Android 2.1.2 through 3.0.4 does not verify SSL certificates.

 
2012-09-08
 
CVE-2012-4012

CWE-200
 

 
The WebView class in the Cybozu KUNAI application before 2.0.6 for Android allows remote attackers to execute arbitrary JavaScript code, and obtain sensitive information, via a crafted application that places this code into a local file associated with a file: URL.

 
 
CVE-2012-4011

CWE-78
 

 
The Cybozu KUNAI application before 2.0.6 for Android allows remote attackers to execute arbitrary Java methods, and obtain sensitive information or execute arbitrary commands, via a crafted web site.

 

 >>> Vendor: Cybozu 19 Products
Share360
Garoon
Cybozu office
Share 360
Collaborex
Cybozu ag
Cybozu pocket
Garoon 1
Mailwise
Cybozu dezie
Cybozu garoon
Cybozu dotsales
Office
Dezie
Cybozu live
Kunai
Kunai browser for remote service
Remote service manager
Kintone


Copyright 2017, cxsecurity.com