Show filters
106 Total Results
Displaying 51-60 of 106
Sort by:
Attacker Value
Unknown

CVE-2016-1198

Disclosure Date: April 21, 2017 (last updated November 26, 2024)
Photopt for Android before 2.0.1 does not verify SSL certificates.
0
Attacker Value
Unknown

CVE-2016-1227

Disclosure Date: July 03, 2016 (last updated November 25, 2024)
NTT EAST Hikari Denwa routers with firmware PR-400MI, RT-400MI, and RV-440MI 07.00.1006 and earlier and NTT WEST Hikari Denwa routers with firmware PR-400MI, RT-400MI, and RV-440MI 07.00.1005 and earlier allow remote authenticated users to execute arbitrary OS commands via unspecified vectors.
Attacker Value
Unknown

CVE-2016-1228

Disclosure Date: July 03, 2016 (last updated November 25, 2024)
Cross-site request forgery (CSRF) vulnerability on NTT EAST Hikari Denwa routers with firmware PR-400MI, RT-400MI, and RV-440MI 07.00.1006 and earlier and NTT WEST Hikari Denwa routers with firmware PR-400MI, RT-400MI, and RV-440MI 07.00.1005 and earlier allows remote attackers to hijack the authentication of arbitrary users.
Attacker Value
Unknown

CVE-2016-4811

Disclosure Date: June 19, 2016 (last updated November 25, 2024)
The NTT Broadband Platform Japan Connected-free Wi-Fi application 1.15.1 and earlier for Android and 1.13.0 and earlier for iOS allows man-in-the-middle attackers to obtain API access via unspecified vectors.
0
Attacker Value
Unknown

CVE-2016-1183

Disclosure Date: June 19, 2016 (last updated November 25, 2024)
NTT Data TERASOLUNA Server Framework for Java(WEB) 2.0.0.1 through 2.0.6.1, as used in Fujitsu Interstage Business Application Server and other products, allows remote attackers to bypass a file-extension protection mechanism, and consequently read arbitrary files, via a crafted pathname.
0
Attacker Value
Unknown

CVE-2016-1230

Disclosure Date: June 05, 2016 (last updated November 25, 2024)
Cross-site scripting (XSS) vulnerability in NTT PC Communications WebARENA Service formmail before 2.2.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown

CVE-2015-7786

Disclosure Date: December 29, 2015 (last updated November 25, 2024)
Cross-site scripting (XSS) vulnerability in the NTT DATA Smart Sourcing JavaScript module 2003-11-26 through 2013-07-09 for Web Analytics Service allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown

CVE-2015-5629

Disclosure Date: September 11, 2015 (last updated October 05, 2023)
The NTT Broadband Platform Japan Connected-free Wi-Fi application 1.6.0 and earlier for Android and 1.0.2 and earlier for iOS allows attackers to bypass a URL whitelist protection mechanism and obtain API access via unspecified vectors.
0
Attacker Value
Unknown

CVE-2015-5630

Disclosure Date: September 11, 2015 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in the NTT Broadband Platform Japan Connected-free Wi-Fi application 1.6.0 and earlier for Android and 1.0.2 and earlier for iOS allows remote attackers to inject arbitrary web script or HTML via a crafted SSID.
0
Attacker Value
Unknown

CVE-2014-9340

Disclosure Date: December 19, 2014 (last updated October 05, 2023)
Multiple cross-site request forgery (CSRF) vulnerabilities in the wpCommentTwit plugin 0.5 and earlier for WordPress allow remote attackers to hijack the authentication of administrators for requests that conduct cross-site scripting (XSS) attacks via the (1) username or (2) password parameter in the wpCommentTwit.php page to wp-admin/options-general.php.
0