Show filters
80 Total Results
Displaying 61-70 of 80
Sort by:
Attacker Value
Unknown

CVE-2014-1677

Disclosure Date: April 03, 2017 (last updated November 26, 2024)
Technicolor TC7200 with firmware STD6.01.12 could allow remote attackers to obtain sensitive information.
0
Attacker Value
Unknown

CVE-2016-7454

Disclosure Date: December 17, 2016 (last updated November 25, 2024)
CSRF vulnerability on Technicolor TC dpc3941T (formerly Cisco dpc3941T) devices with firmware dpc3941-P20-18-v303r20421733-160413a-CMCST allows an attacker to change the Wi-Fi password, open the remote management interface, or reset the router.
0
Attacker Value
Unknown

CVE-2015-7541

Disclosure Date: January 08, 2016 (last updated November 25, 2024)
The initialize method in the Histogram class in lib/colorscore/histogram.rb in the colorscore gem before 0.0.5 for Ruby allows context-dependent attackers to execute arbitrary code via shell metacharacters in the (1) image_path, (2) colors, or (3) depth variable.
0
Attacker Value
Unknown

CVE-2015-7881

Disclosure Date: October 26, 2015 (last updated October 05, 2023)
The Colorbox module 7.x-2.x before 7.x-2.10 for Drupal allows remote authenticated users with certain permissions to bypass intended access restrictions and "add unexpected content to a Colorbox" via unspecified vectors, possibly related to a link in a comment.
0
Attacker Value
Unknown

CVE-2015-1494

Disclosure Date: February 17, 2015 (last updated October 05, 2023)
The FancyBox for WordPress plugin before 3.0.3 for WordPress does not properly restrict access, which allows remote attackers to conduct cross-site scripting (XSS) attacks via an mfbfw[*] parameter in an update action to wp-admin/admin-post.php, as demonstrated by the mfbfw[padding] parameter and exploited in the wild in February 2015.
0
Attacker Value
Unknown

CVE-2014-9142

Disclosure Date: December 05, 2014 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in Technicolor Router TD5130 with firmware 2.05.C29GV allows remote attackers to inject arbitrary web script or HTML via the failrefer parameter.
0
Attacker Value
Unknown

CVE-2014-9144

Disclosure Date: December 05, 2014 (last updated October 05, 2023)
Technicolor Router TD5130 with firmware 2.05.C29GV allows remote attackers to execute arbitrary commands via shell metacharacters in the ping field (setobject_ip parameter).
0
Attacker Value
Unknown

CVE-2014-9143

Disclosure Date: December 05, 2014 (last updated October 05, 2023)
Open redirect vulnerability in Technicolor Router TD5130 with firmware 2.05.C29GV allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the failrefer parameter.
0
Attacker Value
Unknown

CVE-2014-7013

Disclosure Date: October 16, 2014 (last updated October 05, 2023)
The Funny Photo Color Editor (aka com.doirdeditor.funcloreditor) application 0.0.4 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0
Attacker Value
Unknown

CVE-2014-7023

Disclosure Date: October 16, 2014 (last updated October 05, 2023)
The Find Color (aka com.chudong.color) application 1.1.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0