Vulnerabilities > Fujitsu > Critical
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-09-19 | CVE-2023-4092 | SQL Injection vulnerability in Fujitsu Arconte Aurea 1.5.0.0 SQL injection vulnerability in Arconte Áurea, in its 1.5.0.0 version. | 9.8 |
2022-06-20 | CVE-2022-31794 | OS Command Injection vulnerability in Fujitsu Eternus Cs8000 Firmware 8.1 An issue was discovered on Fujitsu ETERNUS CentricStor CS8000 (Control Center) devices before 8.1A SP02 P04. | 10.0 |
2022-06-20 | CVE-2022-31795 | OS Command Injection vulnerability in Fujitsu Eternus Cs8000 Firmware 8.1 An issue was discovered on Fujitsu ETERNUS CentricStor CS8000 (Control Center) devices before 8.1A SP02 P04. | 10.0 |
2022-05-18 | CVE-2022-29516 | OS Command Injection vulnerability in Fujitsu products The web console of FUJITSU Network IPCOM series (IPCOM EX2 IN(3200, 3500), IPCOM EX2 LB(1100, 3200, 3500), IPCOM EX2 SC(1100, 3200, 3500), IPCOM EX2 NW(1100, 3200, 3500), IPCOM EX2 DC, IPCOM EX2 DC, IPCOM EX IN(2300, 2500, 2700), IPCOM EX LB(1100, 1300, 2300, 2500, 2700), IPCOM EX SC(1100, 1300, 2300, 2500, 2700), and IPCOM EX NW(1100, 1300, 2300, 2500, 2700)) allows a remote attacker to execute an arbitrary OS command via unspecified vectors. | 10.0 |
2020-11-30 | CVE-2020-29127 | Improper Authentication vulnerability in Fujitsu Eternus Storage Dx200 S4 Firmware An issue was discovered on Fujitsu Eternus Storage DX200 S4 devices through 2020-11-25. | 10.0 |
2019-10-24 | CVE-2019-18200 | Unspecified vulnerability in Fujitsu Lx390 Firmware An issue was discovered on Fujitsu Wireless Keyboard Set LX390 GK381 devices. | 10.0 |
2017-09-15 | CVE-2017-10855 | Untrusted Search Path vulnerability in Fujitsu Fence-Explorer Untrusted search path vulnerability in FENCE-Explorer for Windows V8.4.1 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory. | 9.3 |
2013-12-14 | CVE-2013-7105 | Buffer Errors vulnerability in Fujitsu Interstage Application Server and Interstage Studio Buffer overflow in the Interstage HTTP Server log functionality, as used in Fujitsu Interstage Application Server 9.0.0, 9.1.0, 9.2.0, 9.3.1, and 10.0.0; and Interstage Studio 9.0.0, 9.1.0, 9.2.0, and 10.0.0, has unspecified impact and attack vectors related to "ihsrlog/rotatelogs." | 10.0 |
2013-07-20 | CVE-2013-2251 | Injection vulnerability in multiple products Apache Struts 2.0.0 through 2.3.15 allows remote attackers to execute arbitrary OGNL expressions via a parameter with a crafted (1) action:, (2) redirect:, or (3) redirectAction: prefix. | 9.8 |
2009-01-26 | CVE-2009-0270 | Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Fujitsu Systemcastwizard Lite Stack-based buffer overflow in PXEService.exe in Fujitsu SystemcastWizard Lite 2.0A, 2.0, 1.9, and earlier allows remote attackers to execute arbitrary code via a large PXE protocol request in a UDP packet. | 10.0 |