Security Advisory
CVE-2015-5646
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
Cybozu Garoon 3.x through 3.7.5 and 4.x through 4.0.3 allows remote authenticated users to execute arbitrary PHP code via unspecified vectors, aka CyVDB-863 and CyVDB-867.