Fujitsu kayıtları
fujitsu üreticisine ait 81 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 1 · %1,2
- Silahlaştırılmış
- 2 · %2,5
- Pre-auth RCE
- 8
- Düzeltme kaydı olan
- %19,8
- Yayından KEV’e ortanca
- 3171 gün
Tekrar eden sınıflar
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer6
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')5
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')5
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')4
- CWE-287 Improper Authentication3
- CWE-312 Cleartext Storage of Sensitive Information3
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
81 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
99Hemen | CVE-2013-2251Silahlaştırılmış | Apache Struts 2.0.0 through 2.3.15 allows remote attackers to execute arbitrary OGNL expressions via a parameter with a crafted (1) action:,apache · archiva · CWE-74 | Kritik9,8 | KEV | %100,0 | 19 Tem 2013 |
48Planlayın | CVE-2013-2566Silahlaştırılmış | The RC4 algorithm, as used in the TLS protocol and SSL protocol, has many single-byte biases, which makes it easier for remote attackers to oracle · communications application session controller · CWE-326 | Orta5,9 | — | %84,4 | 15 Mar 2013 |
45Planlayın | CVE-2021-23840Kavram kanıtı | Integer overflow in CipherUpdateopenssl · openssl · CWE-190 | Yüksek7,5 | — | %50,7 | 16 Şub 2021 |
42Planlayın | CVE-2016-8610Kavram kanıtı | A denial of service flaw was found in OpenSSL 0.9.8, 1.0.1, 1.0.2 through 1.0.2h, and 1.1.0 in the way the TLS/SSL protocol defined processiopenssl · openssl · CWE-400 | Yüksek7,5 | — | %39,7 | 13 Kas 2017 |
42Planlayın | CVE-2009-0270İstismar yok | Stack-based buffer overflow in PXEService.exe in Fujitsu SystemcastWizard Lite 2.0A, 2.0, 1.9, and earlier allows remote attackers to executfujitsu · systemcastwizard lite · CWE-119 | Kritik10,0 | — | %5,5 | 26 Oca 2009 |
41Planlayın | CVE-2018-1000007İstismar yok | libcurl 7.1 through 7.57.0 might accidentally leak authentication data to third parties.haxx · curl | Kritik9,8 | — | %8,0 | 24 Oca 2018 |
41Planlayın | CVE-2008-1040İstismar yok | Buffer overflow in the Single Sign-On function in Fujitsu Interstage Application Server 8.0.0 through 8.0.3 and 9.0.0, Interstage Studio 8.0fujitsu · interstage application server enterprise · CWE-119 | Kritik10,0 | — | %4,6 | 27 Şub 2008 |
41Planlayın | CVE-2013-7105İstismar yok | Buffer overflow in the Interstage HTTP Server log functionality, as used in Fujitsu Interstage Application Server 9.0.0, 9.1.0, 9.2.0, 9.3.1fujitsu · interstage application server · CWE-119 | Kritik10,0 | — | %1,8 | 14 Ara 2013 |
40Planlayın | CVE-2019-6111Kavram kanıtı | An issue was discovered in OpenSSH 7.9.openbsd · openssh · CWE-22 | Orta5,9 | — | %58,2 | 31 Oca 2019 |
40Planlayın | CVE-2020-29127İstismar yok | An issue was discovered on Fujitsu Eternus Storage DX200 S4 devices through 2020-11-25.fujitsu · eternus storage dx200 s4 firmware · CWE-287 | Kritik9,8 | — | %4,5 | 30 Kas 2020 |
40Planlayın | CVE-2022-31794İstismar yok | An issue was discovered on Fujitsu ETERNUS CentricStor CS8000 (Control Center) devices before 8.1A SP02 P04.fujitsu · eternus cs8000 firmware · CWE-78 | Kritik9,8 | — | %3,1 | 20 Haz 2022 |
40Planlayın | CVE-2022-31795İstismar yok | An issue was discovered on Fujitsu ETERNUS CentricStor CS8000 (Control Center) devices before 8.1A SP02 P04.fujitsu · eternus cs8000 firmware · CWE-78 | Kritik9,8 | — | %3,1 | 20 Haz 2022 |
40Planlayın | CVE-2019-18200İstismar yok | An issue was discovered on Fujitsu Wireless Keyboard Set LX390 GK381 devices.fujitsu · lx390 firmware | Kritik9,8 | — | %2,8 | 24 Eki 2019 |
40Planlayın | CVE-2022-29516İstismar yok | The web console of FUJITSU Network IPCOM series (IPCOM EX2 IN(3200, 3500), IPCOM EX2 LB(1100, 3200, 3500), IPCOM EX2 SC(1100, 3200, 3500), Ifujitsu · ipcom ex2 nw 1100 firmware · CWE-78 | Kritik9,8 | — | %2,2 | 18 May 2022 |
40Planlayın | CVE-2009-0264İstismar yok | Buffer overflow in the Registry Setting Tool in Fujitsu SystemcastWizard Lite 2.0A, 2.0, 1.9, and earlier has unknown impact and attack vectfujitsu · systemcastwizard lite · CWE-119 | Kritik10,0 | — | %1,6 | 26 Oca 2009 |
39İzleyin | CVE-2023-4092İstismar yok | SQL injection vulnerability in Fujitsu Arconte Áureafujitsu · arconte aurea · CWE-89 | Kritik9,8 | — | %0,7 | 19 Eyl 2023 |
38İzleyin | CVE-2019-9835İstismar yok | The receiver (aka bridge) component of Fujitsu Wireless Keyboard Set LX901 GK900 devices allows Keystroke Injection.fujitsu · lx901 firmware | Kritik9,6 | — | %0,6 | 15 Mar 2019 |
36İzleyin | CVE-2015-2808İstismar yok | The RC4 algorithm, as used in the TLS protocol and SSL protocol, does not properly combine state data with key data during the initializatiooracle · communications application session controller · CWE-327 | Düşük3,7 | — | %73,9 | 31 Mar 2015 |
35İzleyin | CVE-2023-38555İstismar yok | Authentication bypass vulnerability in Fujitsu network devices Si-R series and SR-M series allows a network-adjacent unauthenticated attackefujitsu · si-r 30b firmware · CWE-287 | Yüksek8,8 | — | %0,4 | 26 Tem 2023 |
34İzleyin | CVE-2024-33620İstismar yok | Absolute path traversal vulnerability exists in ID Link Manager and FUJITSU Software TIME CREATOR.fsas technologies inc. · fujitsu business application id link manager ii · CWE-36 | Yüksek8,6 | — | %0,7 | 18 Haz 2024 |
33İzleyin | CVE-2020-8285İstismar yok | curl 7.21.0 to and including 7.73.0 is vulnerable to uncontrolled recursion due to a stack overflow issue in FTP wildcard match parsing.haxx · libcurl · CWE-674 | Yüksek7,5 | — | %9,8 | 14 Ara 2020 |
32İzleyin | CVE-2018-16156Kavram kanıtı | In PaperStream IP (TWAIN) 1.42.0.5685 (Service Update 7), the FJTWSVIC service running with SYSTEM privilege processes unauthenticated messafujitsu · paperstream ip \(twain\) · CWE-426 | Yüksek7,8 | — | %2,6 | 17 May 2019 |
32İzleyin | CVE-2023-4094İstismar yok | Weak authentication vulnerability in Fujitsu Arconte Áureafujitsu · arconte aurea · CWE-1390 | Yüksek8,2 | — | %0,5 | 19 Eyl 2023 |
32İzleyin | CVE-2023-4096İstismar yok | Weak password recovery mechanism vulnerability in Fujitsu Arconte Áureafujitsu · arconte aurea · CWE-640 | Yüksek8,2 | — | %0,4 | 19 Eyl 2023 |
31İzleyin | CVE-2007-3011Kavram kanıtı | The DBAsciiAccess CGI Script in the web interface in Fujitsu-Siemens Computers ServerView before 4.50.09 allows remote attackers to execute fujitsu · serverview | Yüksek7,5 | — | %4,2 | 5 Tem 2007 |
- CVE-2013-225199Hemen
Apache Struts 2.0.0 through 2.3.15 allows remote attackers to execute arbitrary OGNL expressions via a parameter with a crafted (1) action:,
KritikCVSS 9,8KEVSilahlaştırılmışEPSS %100apache · archiva19 Tem 2013
- CVE-2013-256648Planlayın
The RC4 algorithm, as used in the TLS protocol and SSL protocol, has many single-byte biases, which makes it easier for remote attackers to
OrtaCVSS 5,9SilahlaştırılmışEPSS %84oracle · communications application session controller15 Mar 2013
- CVE-2021-2384045Planlayın
Integer overflow in CipherUpdate
YüksekCVSS 7,5Kavram kanıtıEPSS %51openssl · openssl16 Şub 2021
- CVE-2016-861042Planlayın
A denial of service flaw was found in OpenSSL 0.9.8, 1.0.1, 1.0.2 through 1.0.2h, and 1.1.0 in the way the TLS/SSL protocol defined processi
YüksekCVSS 7,5Kavram kanıtıEPSS %40openssl · openssl13 Kas 2017
- CVE-2009-027042Planlayın
Stack-based buffer overflow in PXEService.exe in Fujitsu SystemcastWizard Lite 2.0A, 2.0, 1.9, and earlier allows remote attackers to execut
KritikCVSS 10,0İstismar yokEPSS %6fujitsu · systemcastwizard lite26 Oca 2009
- CVE-2018-100000741Planlayın
libcurl 7.1 through 7.57.0 might accidentally leak authentication data to third parties.
KritikCVSS 9,8İstismar yokEPSS %8haxx · curl24 Oca 2018
- CVE-2008-104041Planlayın
Buffer overflow in the Single Sign-On function in Fujitsu Interstage Application Server 8.0.0 through 8.0.3 and 9.0.0, Interstage Studio 8.0
KritikCVSS 10,0İstismar yokEPSS %5fujitsu · interstage application server enterprise27 Şub 2008
- CVE-2013-710541Planlayın
Buffer overflow in the Interstage HTTP Server log functionality, as used in Fujitsu Interstage Application Server 9.0.0, 9.1.0, 9.2.0, 9.3.1
KritikCVSS 10,0İstismar yokEPSS %2fujitsu · interstage application server14 Ara 2013
- CVE-2019-611140Planlayın
An issue was discovered in OpenSSH 7.9.
OrtaCVSS 5,9Kavram kanıtıEPSS %58openbsd · openssh31 Oca 2019
- CVE-2020-2912740Planlayın
An issue was discovered on Fujitsu Eternus Storage DX200 S4 devices through 2020-11-25.
KritikCVSS 9,8İstismar yokEPSS %4fujitsu · eternus storage dx200 s4 firmware30 Kas 2020
- CVE-2022-3179440Planlayın
An issue was discovered on Fujitsu ETERNUS CentricStor CS8000 (Control Center) devices before 8.1A SP02 P04.
KritikCVSS 9,8İstismar yokEPSS %3fujitsu · eternus cs8000 firmware20 Haz 2022
- CVE-2022-3179540Planlayın
An issue was discovered on Fujitsu ETERNUS CentricStor CS8000 (Control Center) devices before 8.1A SP02 P04.
KritikCVSS 9,8İstismar yokEPSS %3fujitsu · eternus cs8000 firmware20 Haz 2022
- CVE-2019-1820040Planlayın
An issue was discovered on Fujitsu Wireless Keyboard Set LX390 GK381 devices.
KritikCVSS 9,8İstismar yokEPSS %3fujitsu · lx390 firmware24 Eki 2019
- CVE-2022-2951640Planlayın
The web console of FUJITSU Network IPCOM series (IPCOM EX2 IN(3200, 3500), IPCOM EX2 LB(1100, 3200, 3500), IPCOM EX2 SC(1100, 3200, 3500), I
KritikCVSS 9,8İstismar yokEPSS %2fujitsu · ipcom ex2 nw 1100 firmware18 May 2022
- CVE-2009-026440Planlayın
Buffer overflow in the Registry Setting Tool in Fujitsu SystemcastWizard Lite 2.0A, 2.0, 1.9, and earlier has unknown impact and attack vect
KritikCVSS 10,0İstismar yokEPSS %2fujitsu · systemcastwizard lite26 Oca 2009
- CVE-2023-409239İzleyin
SQL injection vulnerability in Fujitsu Arconte Áurea
KritikCVSS 9,8İstismar yokEPSS %1fujitsu · arconte aurea19 Eyl 2023
- CVE-2019-983538İzleyin
The receiver (aka bridge) component of Fujitsu Wireless Keyboard Set LX901 GK900 devices allows Keystroke Injection.
KritikCVSS 9,6İstismar yokEPSS %1fujitsu · lx901 firmware15 Mar 2019
- CVE-2015-280836İzleyin
The RC4 algorithm, as used in the TLS protocol and SSL protocol, does not properly combine state data with key data during the initializatio
DüşükCVSS 3,7İstismar yokEPSS %74oracle · communications application session controller31 Mar 2015
- CVE-2023-3855535İzleyin
Authentication bypass vulnerability in Fujitsu network devices Si-R series and SR-M series allows a network-adjacent unauthenticated attacke
YüksekCVSS 8,8İstismar yokEPSS %0fujitsu · si-r 30b firmware26 Tem 2023
- CVE-2024-3362034İzleyin
Absolute path traversal vulnerability exists in ID Link Manager and FUJITSU Software TIME CREATOR.
YüksekCVSS 8,6İstismar yokEPSS %1fsas technologies inc. · fujitsu business application id link manager ii18 Haz 2024
- CVE-2020-828533İzleyin
curl 7.21.0 to and including 7.73.0 is vulnerable to uncontrolled recursion due to a stack overflow issue in FTP wildcard match parsing.
YüksekCVSS 7,5İstismar yokEPSS %10haxx · libcurl14 Ara 2020
- CVE-2018-1615632İzleyin
In PaperStream IP (TWAIN) 1.42.0.5685 (Service Update 7), the FJTWSVIC service running with SYSTEM privilege processes unauthenticated messa
YüksekCVSS 7,8Kavram kanıtıEPSS %3fujitsu · paperstream ip \(twain\)17 May 2019
- CVE-2023-409432İzleyin
Weak authentication vulnerability in Fujitsu Arconte Áurea
YüksekCVSS 8,2İstismar yokEPSS %0fujitsu · arconte aurea19 Eyl 2023
- CVE-2023-409632İzleyin
Weak password recovery mechanism vulnerability in Fujitsu Arconte Áurea
YüksekCVSS 8,2İstismar yokEPSS %0fujitsu · arconte aurea19 Eyl 2023
- CVE-2007-301131İzleyin
The DBAsciiAccess CGI Script in the web interface in Fujitsu-Siemens Computers ServerView before 4.50.09 allows remote attackers to execute
YüksekCVSS 7,5Kavram kanıtıEPSS %4fujitsu · serverview5 Tem 2007