Show filters
106 Total Results
Displaying 51-60 of 106
Sort by:
Attacker Value
Unknown
CVE-2016-1198
Disclosure Date: April 21, 2017 (last updated November 26, 2024)
Photopt for Android before 2.0.1 does not verify SSL certificates.
0
Attacker Value
Unknown
CVE-2016-1227
Disclosure Date: July 03, 2016 (last updated November 25, 2024)
NTT EAST Hikari Denwa routers with firmware PR-400MI, RT-400MI, and RV-440MI 07.00.1006 and earlier and NTT WEST Hikari Denwa routers with firmware PR-400MI, RT-400MI, and RV-440MI 07.00.1005 and earlier allow remote authenticated users to execute arbitrary OS commands via unspecified vectors.
0
Attacker Value
Unknown
CVE-2016-1228
Disclosure Date: July 03, 2016 (last updated November 25, 2024)
Cross-site request forgery (CSRF) vulnerability on NTT EAST Hikari Denwa routers with firmware PR-400MI, RT-400MI, and RV-440MI 07.00.1006 and earlier and NTT WEST Hikari Denwa routers with firmware PR-400MI, RT-400MI, and RV-440MI 07.00.1005 and earlier allows remote attackers to hijack the authentication of arbitrary users.
0
Attacker Value
Unknown
CVE-2016-4811
Disclosure Date: June 19, 2016 (last updated November 25, 2024)
The NTT Broadband Platform Japan Connected-free Wi-Fi application 1.15.1 and earlier for Android and 1.13.0 and earlier for iOS allows man-in-the-middle attackers to obtain API access via unspecified vectors.
0
Attacker Value
Unknown
CVE-2016-1183
Disclosure Date: June 19, 2016 (last updated November 25, 2024)
NTT Data TERASOLUNA Server Framework for Java(WEB) 2.0.0.1 through 2.0.6.1, as used in Fujitsu Interstage Business Application Server and other products, allows remote attackers to bypass a file-extension protection mechanism, and consequently read arbitrary files, via a crafted pathname.
0
Attacker Value
Unknown
CVE-2016-1230
Disclosure Date: June 05, 2016 (last updated November 25, 2024)
Cross-site scripting (XSS) vulnerability in NTT PC Communications WebARENA Service formmail before 2.2.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown
CVE-2015-7786
Disclosure Date: December 29, 2015 (last updated November 25, 2024)
Cross-site scripting (XSS) vulnerability in the NTT DATA Smart Sourcing JavaScript module 2003-11-26 through 2013-07-09 for Web Analytics Service allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown
CVE-2015-5629
Disclosure Date: September 11, 2015 (last updated October 05, 2023)
The NTT Broadband Platform Japan Connected-free Wi-Fi application 1.6.0 and earlier for Android and 1.0.2 and earlier for iOS allows attackers to bypass a URL whitelist protection mechanism and obtain API access via unspecified vectors.
0
Attacker Value
Unknown
CVE-2015-5630
Disclosure Date: September 11, 2015 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in the NTT Broadband Platform Japan Connected-free Wi-Fi application 1.6.0 and earlier for Android and 1.0.2 and earlier for iOS allows remote attackers to inject arbitrary web script or HTML via a crafted SSID.
0
Attacker Value
Unknown
CVE-2014-9340
Disclosure Date: December 19, 2014 (last updated October 05, 2023)
Multiple cross-site request forgery (CSRF) vulnerabilities in the wpCommentTwit plugin 0.5 and earlier for WordPress allow remote attackers to hijack the authentication of administrators for requests that conduct cross-site scripting (XSS) attacks via the (1) username or (2) password parameter in the wpCommentTwit.php page to wp-admin/options-general.php.
0