Vulnerability index

Browse CVEs

16 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Home Spot Cube 2 Firmware CRITICAL 9.8
CVE-2024-23978

Heap-based buffer overflow vulnerability exists in HOME SPOT CUBE2 V102 and earlier. By processing invalid values, arbitrary code may be executed. No…

Mitigation only
Fix from $2,300 2024-02-02
Home Spot Cube 2 Firmware HIGH 7.5
CVE-2024-21780

Stack-based buffer overflow vulnerability exists in HOME SPOT CUBE2 V102 and earlier. Processing a specially crafted command may result in a denial o…

Mitigation only
Fix from $1,950 2024-02-02
Home Spot Cube 2 Firmware HIGH 8.8
CVE-2022-33948

HOME SPOT CUBE2 V102 contains an OS command injection vulnerability due to improper processing of data received from DHCP server. An adjacent attacke…

Mitigation only
Fix from $1,950 2022-07-04
Smart Tv Box Firmware CRITICAL 9.8
CVE-2019-6005

Smart TV Box firmware version prior to 1300 allows remote attackers to bypass access restriction to conduct arbitrary operations on the device withou…

Fix: 1300+
Fix from $2,300 2019-09-12
\+ Message MEDIUM 5.9
CVE-2018-0691

Multiple +Message Apps (Softbank +Message App for Android prior to version 10.1.7, Softbank +Message App for iOS prior to version 1.1.23, NTT DOCOMO …

Fix: 1.0.6 / 1.1.23+
Fix from $1,600 2018-11-15
Anshin Net Security HIGH 7.8
CVE-2018-0517

Untrusted search path vulnerability in Anshin net security for Windows Version 16.0.1.44 and earlier allows an attacker to gain privileges via a Troj…

Fix: after 6.0.1.44
Fix from $1,950 2018-02-08
Qua Station Firmware HIGH 7.8
CVE-2017-2289

Untrusted search path vulnerability in Installer of Qua station connection tool for Windows version 1.00.03 allows an attacker to gain privileges via…

Mitigation only
Fix from $1,950 2017-08-18
Home Spot Cube 2 Firmware HIGH 8.8
CVE-2017-2184

Buffer overflow in HOME SPOT CUBE2 firmware V101 and earlier allows an attacker to execute arbitrary code via WebUI.

Mitigation only
Fix from $1,950 2017-07-07
Home Spot Cube 2 Firmware HIGH 8.8
CVE-2017-2185

HOME SPOT CUBE2 firmware V101 and earlier allows authenticated attackers to execute arbitrary OS commands via WebUI.

Mitigation only
Fix from $1,950 2017-07-07
Home Spot Cube 2 Firmware HIGH 8.8
CVE-2017-2186

HOME SPOT CUBE2 firmware V101 and earlier allows an attacker to bypass authentication to load malicious firmware via WebUI.

Mitigation only
Fix from $1,950 2017-07-07
Home Spot Cube 2 Firmware HIGH 8.0
CVE-2017-2183

HOME SPOT CUBE2 firmware V101 and earlier allows authenticated attackers to execute arbitrary OS commands via Clock Settings.

Mitigation only
Fix from $1,950 2017-07-07
Home Spot Cube Firmware HIGH 7.5
CVE-2016-1139

Cross-site request forgery (CSRF) vulnerability on KDDI HOME SPOT CUBE devices before 2 allows remote attackers to hijack the authentication of unspe…

Mitigation only
Fix from $1,950 2016-01-30
Home Spot Cube Firmware MEDIUM 6.1
CVE-2016-1140

KDDI HOME SPOT CUBE devices before 2 allow remote attackers to conduct clickjacking attacks via unspecified vectors.

Mitigation only
Fix from $1,600 2016-01-30
Home Spot Cube Firmware HIGH 7.4
CVE-2016-1137

Open redirect vulnerability on KDDI HOME SPOT CUBE devices before 2 allows remote attackers to redirect users to arbitrary web sites and conduct phis…

No fix yet
Fix from $1,950 2016-01-30
Home Spot Cube Firmware MEDIUM 5.4
CVE-2016-1136

Cross-site scripting (XSS) vulnerability on KDDI HOME SPOT CUBE devices before 2 allows remote authenticated users to inject arbitrary web script or …

Mitigation only
Fix from $1,600 2016-01-30
Ezfactory Download Cgi HIGH 7.8
CVE-2007-3692

Directory traversal vulnerability in download.cgi in EZFactory KDDI Download CGI 1.x allows remote attackers to read and download arbitrary files via…

Patch available
Fix from $1,950 2007-07-11