Show filters
194 Total Results
Displaying 161-170 of 194
Sort by:
Attacker Value
Unknown

CVE-2013-2310

Disclosure Date: June 17, 2013 (last updated October 05, 2023)
SoftBank Wi-Fi Spot Configuration Software, as used on SoftBank SHARP 3G handsets, SoftBank Panasonic 3G handsets, SoftBank NEC 3G handsets, SoftBank Samsung 3G handsets, SoftBank mobile Wi-Fi routers, SoftBank Android smartphones with the Wi-Fi application before 1.7.1, SoftBank Windows Mobile smartphones with the WISPrClient application before 1.3.1, SoftBank Disney Mobile Android smartphones with the Wi-Fi application before 1.7.1, and WILLCOM Android smartphones with the Wi-Fi application before 1.7.1, does not properly connect to access points, which allows remote attackers to obtain sensitive information by leveraging access to an 802.11 network.
0
Attacker Value
Unknown

CVE-2013-0142

Disclosure Date: June 07, 2013 (last updated October 05, 2023)
QNAP VioStor NVR devices with firmware 4.0.3, and the Surveillance Station Pro component in QNAP NAS, have a hardcoded guest account, which allows remote attackers to obtain web-server login access via unspecified vectors.
0
Attacker Value
Unknown

CVE-2013-0143

Disclosure Date: June 07, 2013 (last updated October 05, 2023)
cgi-bin/pingping.cgi on QNAP VioStor NVR devices with firmware 4.0.3, and in the Surveillance Station Pro component in QNAP NAS, allows remote authenticated users to execute arbitrary commands by leveraging guest access and placing shell metacharacters in the query string.
0
Attacker Value
Unknown

CVE-2012-1175

Disclosure Date: August 26, 2012 (last updated October 05, 2023)
Integer overflow in the GnashImage::size method in libbase/GnashImage.h in GNU Gnash 0.8.10 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted SWF file, which triggers a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2011-4328

Disclosure Date: June 16, 2012 (last updated October 04, 2023)
plugin/npapi/plugin.cpp in Gnash before 0.8.10 uses weak permissions (world readable) for cookie files with predictable names in /tmp, which allows local users to obtain sensitive information.
0
Attacker Value
Unknown

CVE-2012-2568

Disclosure Date: May 25, 2012 (last updated October 04, 2023)
d41d8cd98f00b204e9800998ecf8427e.php in the management web server on the Seagate BlackArmor device allows remote attackers to change the administrator password via unspecified vectors.
0
Attacker Value
Unknown

CVE-2012-1249

Disclosure Date: May 21, 2012 (last updated October 04, 2023)
The iLunascape application 1.0.4.0 and earlier for Android does not properly implement the WebView class, which allows remote attackers to obtain sensitive stored information via a crafted application.
0
Attacker Value
Unknown

CVE-2011-0452

Disclosure Date: February 24, 2011 (last updated October 04, 2023)
Untrusted search path vulnerability in the script function in Lunascape before 6.4.3 allows local users to gain privileges via a Trojan horse executable file in the current working directory.
0
Attacker Value
Unknown

CVE-2010-3927

Disclosure Date: January 24, 2011 (last updated October 04, 2023)
Untrusted search path vulnerability in Lunascape before 6.4.0 allows local users to gain privileges via a Trojan horse DLL in the current working directory.
0
Attacker Value
Unknown

CVE-2010-4337

Disclosure Date: January 14, 2011 (last updated October 04, 2023)
The configure script in gnash 0.8.8 allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/gnash-configure-errors.$$, (2) /tmp/gnash-configure-warnings.$$, or (3) /tmp/gnash-configure-recommended.$$ files.
0