Show filters
101 Total Results
Displaying 81-90 of 101
Sort by:
Attacker Value
Unknown

CVE-2016-7806

Disclosure Date: June 09, 2017 (last updated November 26, 2024)
I-O DATA DEVICE WFS-SR01 firmware version 1.10 and earlier allow remote attackers to execute arbitrary OS commands via unspecified vectors.
0
Attacker Value
Unknown

CVE-2016-7814

Disclosure Date: June 09, 2017 (last updated November 26, 2024)
I-O DATA DEVICE TS-WRLP firmware version 1.00.01 and earlier and TS-WRLA firmware version 1.00.01 and earlier allow remote attackers to obtain authentication credentials via unspecified vectors.
0
Attacker Value
Unknown

CVE-2016-7819

Disclosure Date: June 09, 2017 (last updated November 26, 2024)
I-O DATA DEVICE TS-WRLP firmware version 1.01.02 and earlier and TS-WRLA firmware version 1.01.02 and earlier allows an attacker with administrator rights to execute arbitrary OS commands via unspecified vectors.
0
Attacker Value
Unknown

CVE-2017-9045

Disclosure Date: May 18, 2017 (last updated November 26, 2024)
The Google I/O 2017 application before 5.1.4 for Android downloads multiple .json files from http://storage.googleapis.com without SSL, which makes it easier for man-in-the-middle attackers to spoof Feed and Schedule data by creating a modified blocks_v4.json file.
0
Attacker Value
Unknown

CVE-2014-3887

Disclosure Date: April 13, 2017 (last updated November 26, 2024)
Cross-site scripting (XSS) vulnerability in I-O DATA DEVICE RockDisk with firmware before 1.05e1-2.0.5 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors. NOTE: This vulnerability exists because of an incomplete fix for CVE-2013-4713.
0
Attacker Value
Unknown

CVE-2016-7912

Disclosure Date: November 16, 2016 (last updated November 25, 2024)
Use-after-free vulnerability in the ffs_user_copy_worker function in drivers/usb/gadget/function/f_fs.c in the Linux kernel before 4.5.3 allows local users to gain privileges by accessing an I/O data structure after a certain callback call.
Attacker Value
Unknown

CVE-2016-4845

Disclosure Date: September 24, 2016 (last updated November 25, 2024)
Cross-site request forgery (CSRF) vulnerability on I-O DATA DEVICE HVL-A2.0, HVL-A3.0, HVL-A4.0, HVL-AT1.0S, HVL-AT2.0, HVL-AT3.0, HVL-AT4.0, HVL-AT2.0A, HVL-AT3.0A, and HVL-AT4.0A devices with firmware before 2.04 allows remote attackers to hijack the authentication of arbitrary users for requests that delete content.
0
Attacker Value
Unknown

CVE-2016-4820

Disclosure Date: June 19, 2016 (last updated November 25, 2024)
Cross-site request forgery (CSRF) vulnerability on I-O DATA DEVICE ETX-R devices allows remote attackers to hijack the authentication of arbitrary users.
0
Attacker Value
Unknown

CVE-2016-4821

Disclosure Date: June 19, 2016 (last updated November 25, 2024)
I-O DATA DEVICE ETX-R devices allow remote attackers to cause a denial of service (web-server crash) via unspecified vectors.
0
Attacker Value
Unknown

CVE-2016-1207

Disclosure Date: May 14, 2016 (last updated November 25, 2024)
Cross-site scripting (XSS) vulnerability on I-O DATA DEVICE WN-G300R devices with firmware 1.12 and earlier, WN-G300R2 devices with firmware 1.12 and earlier, and WN-G300R3 devices with firmware 1.01 and earlier allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
0