Vulnerabilities > Fujitsu

DATE CVE VULNERABILITY TITLE RISK
2021-01-27 CVE-2021-3326 Reachable Assertion vulnerability in multiple products
The iconv function in the GNU C Library (aka glibc or libc6) 2.32 and earlier, when processing invalid input sequences in the ISO-2022-JP-3 encoding, fails an assertion in the code path and aborts the program, potentially resulting in a denial of service.
network
low complexity
gnu netapp oracle fujitsu debian CWE-617
7.5
2020-12-14 CVE-2020-8285 Uncontrolled Recursion vulnerability in multiple products
curl 7.21.0 to and including 7.73.0 is vulnerable to uncontrolled recursion due to a stack overflow issue in FTP wildcard match parsing.
7.5
2020-12-14 CVE-2020-8284 A malicious server can use the FTP PASV response to trick curl 7.73.0 and earlier into connecting back to a given IP address and port, and this way potentially make curl extract information about services that are otherwise private and not disclosed, for example doing port scanning and service banner extractions. 3.7
2020-12-14 CVE-2020-8177 Injection vulnerability in multiple products
curl 7.20.0 through 7.70.0 is vulnerable to improper restriction of names for files and other resources that can lead too overwriting a local file when the -J flag is used.
local
low complexity
haxx debian fujitsu siemens splunk CWE-74
7.8
2020-11-30 CVE-2020-29127 Improper Authentication vulnerability in Fujitsu Eternus Storage Dx200 S4 Firmware
An issue was discovered on Fujitsu Eternus Storage DX200 S4 devices through 2020-11-25.
network
low complexity
fujitsu CWE-287
critical
10.0
2020-09-09 CVE-2020-1968 Information Exposure Through Discrepancy vulnerability in multiple products
The Raccoon attack exploits a flaw in the TLS specification which can lead to an attacker being able to compute the pre-master secret in connections which have used a Diffie-Hellman (DH) based ciphersuite.
network
high complexity
openssl canonical debian oracle fujitsu CWE-203
3.7
2020-06-04 CVE-2020-13817 Use of Insufficiently Random Values vulnerability in multiple products
ntpd in ntp before 4.2.8p14 and 4.3.x before 4.3.100 allows remote attackers to cause a denial of service (daemon exit or system time change) by predicting transmit timestamps for use in spoofed packets.
5.8
2020-02-07 CVE-2019-13163 Inadequate Encryption Strength vulnerability in Fujitsu products
The Fujitsu TLS library allows a man-in-the-middle attack.
4.3
2019-10-24 CVE-2019-18201 Missing Encryption of Sensitive Data vulnerability in Fujitsu Lx390 Firmware
An issue was discovered on Fujitsu Wireless Keyboard Set LX390 GK381 devices.
network
low complexity
fujitsu CWE-311
5.0
2019-10-24 CVE-2019-18200 Unspecified vulnerability in Fujitsu Lx390 Firmware
An issue was discovered on Fujitsu Wireless Keyboard Set LX390 GK381 devices.
network
low complexity
fujitsu
critical
10.0