Vulnerabilities > Fujitsu > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-09-19 CVE-2023-4092 SQL Injection vulnerability in Fujitsu Arconte Aurea 1.5.0.0
SQL injection vulnerability in Arconte Áurea, in its 1.5.0.0 version.
network
low complexity
fujitsu CWE-89
critical
9.8
2022-06-20 CVE-2022-31794 OS Command Injection vulnerability in Fujitsu Eternus Cs8000 Firmware 8.1
An issue was discovered on Fujitsu ETERNUS CentricStor CS8000 (Control Center) devices before 8.1A SP02 P04.
network
low complexity
fujitsu CWE-78
critical
9.8
2022-06-20 CVE-2022-31795 OS Command Injection vulnerability in Fujitsu Eternus Cs8000 Firmware 8.1
An issue was discovered on Fujitsu ETERNUS CentricStor CS8000 (Control Center) devices before 8.1A SP02 P04.
network
low complexity
fujitsu CWE-78
critical
9.8
2022-05-18 CVE-2022-29516 OS Command Injection vulnerability in Fujitsu products
The web console of FUJITSU Network IPCOM series (IPCOM EX2 IN(3200, 3500), IPCOM EX2 LB(1100, 3200, 3500), IPCOM EX2 SC(1100, 3200, 3500), IPCOM EX2 NW(1100, 3200, 3500), IPCOM EX2 DC, IPCOM EX2 DC, IPCOM EX IN(2300, 2500, 2700), IPCOM EX LB(1100, 1300, 2300, 2500, 2700), IPCOM EX SC(1100, 1300, 2300, 2500, 2700), and IPCOM EX NW(1100, 1300, 2300, 2500, 2700)) allows a remote attacker to execute an arbitrary OS command via unspecified vectors.
network
low complexity
fujitsu CWE-78
critical
9.8
2020-11-30 CVE-2020-29127 Improper Authentication vulnerability in Fujitsu Eternus Storage Dx200 S4 Firmware 20201125
An issue was discovered on Fujitsu Eternus Storage DX200 S4 devices through 2020-11-25.
network
low complexity
fujitsu CWE-287
critical
9.8
2019-10-24 CVE-2019-18200 Unspecified vulnerability in Fujitsu Lx390 Firmware
An issue was discovered on Fujitsu Wireless Keyboard Set LX390 GK381 devices.
network
low complexity
fujitsu
critical
9.8
2019-03-15 CVE-2019-9835 Unspecified vulnerability in Fujitsu Gk900 Firmware and Lx901 Firmware
The receiver (aka bridge) component of Fujitsu Wireless Keyboard Set LX901 GK900 devices allows Keystroke Injection.
low complexity
fujitsu
critical
9.6
2018-01-24 CVE-2018-1000007 libcurl 7.1 through 7.57.0 might accidentally leak authentication data to third parties.
network
low complexity
haxx debian canonical redhat fujitsu
critical
9.8
2013-07-20 CVE-2013-2251 Injection vulnerability in multiple products
Apache Struts 2.0.0 through 2.3.15 allows remote attackers to execute arbitrary OGNL expressions via a parameter with a crafted (1) action:, (2) redirect:, or (3) redirectAction: prefix.
network
low complexity
apache fujitsu oracle CWE-74
critical
9.8