Vulnerabilities > Fujitsu > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-09-19 CVE-2023-4092 SQL Injection vulnerability in Fujitsu Arconte Aurea 1.5.0.0
SQL injection vulnerability in Arconte Áurea, in its 1.5.0.0 version.
network
low complexity
fujitsu CWE-89
critical
9.8
2022-06-20 CVE-2022-31794 OS Command Injection vulnerability in Fujitsu Eternus Cs8000 Firmware 8.1
An issue was discovered on Fujitsu ETERNUS CentricStor CS8000 (Control Center) devices before 8.1A SP02 P04.
network
low complexity
fujitsu CWE-78
critical
10.0
2022-06-20 CVE-2022-31795 OS Command Injection vulnerability in Fujitsu Eternus Cs8000 Firmware 8.1
An issue was discovered on Fujitsu ETERNUS CentricStor CS8000 (Control Center) devices before 8.1A SP02 P04.
network
low complexity
fujitsu CWE-78
critical
10.0
2022-05-18 CVE-2022-29516 OS Command Injection vulnerability in Fujitsu products
The web console of FUJITSU Network IPCOM series (IPCOM EX2 IN(3200, 3500), IPCOM EX2 LB(1100, 3200, 3500), IPCOM EX2 SC(1100, 3200, 3500), IPCOM EX2 NW(1100, 3200, 3500), IPCOM EX2 DC, IPCOM EX2 DC, IPCOM EX IN(2300, 2500, 2700), IPCOM EX LB(1100, 1300, 2300, 2500, 2700), IPCOM EX SC(1100, 1300, 2300, 2500, 2700), and IPCOM EX NW(1100, 1300, 2300, 2500, 2700)) allows a remote attacker to execute an arbitrary OS command via unspecified vectors.
network
low complexity
fujitsu CWE-78
critical
10.0
2020-11-30 CVE-2020-29127 Improper Authentication vulnerability in Fujitsu Eternus Storage Dx200 S4 Firmware
An issue was discovered on Fujitsu Eternus Storage DX200 S4 devices through 2020-11-25.
network
low complexity
fujitsu CWE-287
critical
10.0
2019-10-24 CVE-2019-18200 Unspecified vulnerability in Fujitsu Lx390 Firmware
An issue was discovered on Fujitsu Wireless Keyboard Set LX390 GK381 devices.
network
low complexity
fujitsu
critical
10.0
2017-09-15 CVE-2017-10855 Untrusted Search Path vulnerability in Fujitsu Fence-Explorer
Untrusted search path vulnerability in FENCE-Explorer for Windows V8.4.1 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
network
fujitsu microsoft CWE-426
critical
9.3
2013-12-14 CVE-2013-7105 Buffer Errors vulnerability in Fujitsu Interstage Application Server and Interstage Studio
Buffer overflow in the Interstage HTTP Server log functionality, as used in Fujitsu Interstage Application Server 9.0.0, 9.1.0, 9.2.0, 9.3.1, and 10.0.0; and Interstage Studio 9.0.0, 9.1.0, 9.2.0, and 10.0.0, has unspecified impact and attack vectors related to "ihsrlog/rotatelogs."
network
low complexity
fujitsu CWE-119
critical
10.0
2013-07-20 CVE-2013-2251 Injection vulnerability in multiple products
Apache Struts 2.0.0 through 2.3.15 allows remote attackers to execute arbitrary OGNL expressions via a parameter with a crafted (1) action:, (2) redirect:, or (3) redirectAction: prefix.
network
low complexity
apache fujitsu oracle CWE-74
critical
9.8
2009-01-26 CVE-2009-0270 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Fujitsu Systemcastwizard Lite
Stack-based buffer overflow in PXEService.exe in Fujitsu SystemcastWizard Lite 2.0A, 2.0, 1.9, and earlier allows remote attackers to execute arbitrary code via a large PXE protocol request in a UDP packet.
network
low complexity
fujitsu CWE-119
critical
10.0