An authorization bypass vulnerability exists in SHIRASAGI through a user-controlled key, which may allow an unauthorized attacker to retrieve files from the groupware's shared file feature.
Metrics
Affected Vendors & Products
References
History
Thu, 10 Sep 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 10 Sep 2026 07:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Authorization Bypass Allowing Unauthorized File Retrieval in Shirasagi Groupware |
Thu, 10 Sep 2026 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An authorization bypass vulnerability exists in SHIRASAGI through a user-controlled key, which may allow an unauthorized attacker to retrieve files from the groupware's shared file feature. | |
| Weaknesses | CWE-639 | |
| References |
| |
| Metrics |
cvssV3_0
|
Status: PUBLISHED
Assigner: jpcert
Published: 2026-09-10T06:09:30.059Z
Updated: 2026-09-10T12:58:59.489Z
Reserved: 2026-09-04T00:27:37.395Z
Link: CVE-2026-82582
Updated: 2026-09-10T12:58:44.039Z
Status : Deferred
Published: 2026-09-10T07:17:03.493
Modified: 2026-09-10T15:13:07.090
Link: CVE-2026-82582
No data.