Show filters
49 Total Results
Displaying 31-40 of 49
Sort by:
Attacker Value
Unknown

CVE-2019-6535

Disclosure Date: February 05, 2019 (last updated November 27, 2024)
Mitsubishi Electric Q03/04/06/13/26UDVCPU: serial number 20081 and prior, Q04/06/13/26UDPVCPU: serial number 20081 and prior, and Q03UDECPU, Q04/06/10/13/20/26/50/100UDEHCPU: serial number 20101 and prior. A remote attacker can send specific bytes over Port 5007 that will result in an Ethernet stack crash.
Attacker Value
Unknown

CVE-2018-18660

Disclosure Date: October 26, 2018 (last updated November 27, 2024)
An issue was discovered in Arcserve Unified Data Protection (UDP) through 6.5 Update 4. There is a DDI-VRT-2018-21 Reflected Cross-site Scripting via /authenticationendpoint/domain.jsp issue.
Attacker Value
Unknown

CVE-2018-18658

Disclosure Date: October 26, 2018 (last updated November 27, 2024)
An issue was discovered in Arcserve Unified Data Protection (UDP) through 6.5 Update 4. There is a DDI-VRT-2018-20 Unauthenticated Sensitive Information Disclosure via /UDPUpdates/Config/FullUpdateSettings.xml issue.
0
Attacker Value
Unknown

CVE-2018-18659

Disclosure Date: October 26, 2018 (last updated November 27, 2024)
An issue was discovered in Arcserve Unified Data Protection (UDP) through 6.5 Update 4. There is a DDI-VRT-2018-19 Unauthenticated XXE in /management/UdpHttpService issue.
0
Attacker Value
Unknown

CVE-2018-18657

Disclosure Date: October 26, 2018 (last updated November 27, 2024)
An issue was discovered in Arcserve Unified Data Protection (UDP) through 6.5 Update 4. There is a DDI-VRT-2018-18 Unauthenticated Sensitive Information Disclosure via /gateway/services/EdgeServiceImpl issue.
0
Attacker Value
Unknown

CVE-2016-10672

Disclosure Date: June 04, 2018 (last updated November 26, 2024)
cloudpub-redis is a module for CloudPub: Redis Backend cloudpub-redis downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swapping out the requested resources with an attacker controlled copy if the attacker is on the network or positioned in between the user and the remote server.
0
Attacker Value
Unknown

CVE-2015-4068

Disclosure Date: May 29, 2015 (last updated July 17, 2024)
Directory traversal vulnerability in Arcserve UDP before 5.0 Update 4 allows remote attackers to obtain sensitive information or cause a denial of service via a crafted file path to the (1) reportFileServlet or (2) exportServlet servlet.
Attacker Value
Unknown

CVE-2013-2758

Disclosure Date: May 23, 2014 (last updated October 05, 2023)
Apache CloudStack 4.0.0 before 4.0.2 and Citrix CloudPlatform (formerly Citrix CloudStack) 3.0.x before 3.0.6 Patch C uses a hash of a predictable sequence, which makes it easier for remote attackers to guess the console access URL via a brute force attack.
0
Attacker Value
Unknown

CVE-2013-2757

Disclosure Date: May 23, 2014 (last updated October 05, 2023)
Citrix CloudPlatform (formerly Citrix CloudStack) 3.0.x before 3.0.6 Patch C does not properly restrict access to VNC ports on the management network, which allows remote attackers to have unspecified impact via unknown vectors.
0
Attacker Value
Unknown

CVE-2013-2756

Disclosure Date: May 23, 2014 (last updated October 05, 2023)
Apache CloudStack 4.0.0 before 4.0.2 and Citrix CloudPlatform (formerly Citrix CloudStack) 3.0.x before 3.0.6 Patch C allows remote attackers to bypass the console proxy authentication by leveraging knowledge of the source code.
0