Show filters
14 Total Results
Displaying 1-10 of 14
Sort by:
Attacker Value
Unknown

CVE-2022-43543

Disclosure Date: December 21, 2022 (last updated October 08, 2023)
KDDI +Message App, NTT DOCOMO +Message App, and SoftBank +Message App contain a vulnerability caused by improper handling of Unicode control characters. +Message App displays text unprocessed, even when control characters are contained, and the text is shown based on Unicode control character's specifications. Therefore, a crafted text may display misleading web links. As a result, a spoofed URL may be displayed and phishing attacks may be conducted. Affected products and versions are as follows: KDDI +Message App for Android prior to version 3.9.2 and +Message App for iOS prior to version 3.9.4, NTT DOCOMO +Message App for Android prior to version 54.49.0500 and +Message App for iOS prior to version 3.9.4, and SoftBank +Message App for Android prior to version 12.9.5 and +Message App for iOS prior to version 3.9.4
Attacker Value
Unknown

CVE-2021-20847

Disclosure Date: December 01, 2021 (last updated February 23, 2025)
Cross-site scripting vulnerability in Wi-Fi STATION SH-52A (38JP_1_11G, 38JP_1_11J, 38JP_1_11K, 38JP_1_11L, 38JP_1_26F, 38JP_1_26G, 38JP_1_26J, 38JP_2_03B, and 38JP_2_03C) allows a remote unauthenticated attacker to inject an arbitrary script via WebUI of the device.
Attacker Value
Unknown

CVE-2019-5914

Disclosure Date: February 13, 2019 (last updated November 27, 2024)
V20 PRO L-01J software version L01J20c and L01J20d has a NULL pointer exception flaw that can be used by an attacker to cause the device to crash on the same network range via a specially crafted access point.
0
Attacker Value
Unknown

CVE-2017-10871

Disclosure Date: November 13, 2017 (last updated November 26, 2024)
Buffer overflow in NTT DOCOMO Wi-Fi STATION L-02F Software version L02F-MDM9625-V10h-JUN-23-2017-DCM-JP and earlier allows an attacker to execute arbitrary code via unspecified vectors.
0
Attacker Value
Unknown

CVE-2017-10845

Disclosure Date: September 15, 2017 (last updated November 26, 2024)
Wi-Fi STATION L-02F Software version V10g and earlier allows remote attackers to access the device with administrative privileges and perform unintended operations through a backdoor account.
0
Attacker Value
Unknown

CVE-2017-10846

Disclosure Date: September 15, 2017 (last updated November 26, 2024)
Wi-Fi STATION L-02F Software version V10b and earlier allows remote attackers to bypass access restrictions to obtain information on device settings via unspecified vectors.
0
Attacker Value
Unknown

CVE-2017-10812

Disclosure Date: August 29, 2017 (last updated November 26, 2024)
Untrusted search path vulnerability in Photo Collection PC Software Ver.4.0.2 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
0
Attacker Value
Unknown

CVE-2016-4854

Disclosure Date: May 22, 2017 (last updated November 26, 2024)
Cross-site request forgery (CSRF) vulnerability in L-04D firmware version V10a and V10b allows remote attackers to hijack the authentication of administrators to perform arbitrary operations via unspecified vectors.
0
Attacker Value
Unknown

CVE-2016-1132

Disclosure Date: April 13, 2017 (last updated November 26, 2024)
Shoplat App for iOS 1.10.00 through 1.18.00 does not properly verify SSL certificates.
0
Attacker Value
Unknown

CVE-2014-1979

Disclosure Date: March 19, 2014 (last updated October 05, 2023)
The NTT DOCOMO sp mode mail application 5900 through 6300 for Android 4.0.x and 6000 through 6620 for Android 4.1 through 4.4 allows remote attackers to execute arbitrary Java methods via Deco-mail emoticon POP data in an e-mail message.
0