Vulnerabilities > DOS Osaka > SS1

DATE CVE VULNERABILITY TITLE RISK
2023-03-06 CVE-2023-22335 Unspecified vulnerability in Dos-Osaka Rakuraku PC Cloud Agent and SS1
Improper access control vulnerability in SS1 Ver.13.0.0.40 and earlier and Rakuraku PC Cloud Agent Ver.2.1.8 and earlier allows a remote attacker to bypass access restriction and download an arbitrary file of the directory where the product runs.
network
low complexity
dos-osaka
7.5
2023-03-06 CVE-2023-22336 Path Traversal vulnerability in Dos-Osaka Rakuraku PC Cloud Agent and SS1
Path traversal vulnerability in SS1 Ver.13.0.0.40 and earlier and Rakuraku PC Cloud Agent Ver.2.1.8 and earlier allows a remote attacker to upload a specially crafted file to an arbitrary directory.
network
low complexity
dos-osaka CWE-22
critical
9.8
2023-03-06 CVE-2023-22344 Use of Hard-coded Credentials vulnerability in Dos-Osaka Rakuraku PC Cloud Agent and SS1
Use of hard-coded credentials vulnerability in SS1 Ver.13.0.0.40 and earlier and Rakuraku PC Cloud Agent Ver.2.1.8 and earlier allows a remote attacker to obtain the password of the debug tool and execute it.
network
low complexity
dos-osaka CWE-798
critical
9.8