Vulnerabilities > Fujitsu > Medium

DATE CVE VULNERABILITY TITLE RISK
2008-03-08 CVE-2008-1207 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Fujitsu products
Multiple unspecified vulnerabilities in Fujitsu Interstage Smart Repository, as used in multiple Fujitsu Interstage products, allow remote attackers to cause a denial of service (daemon crash) via (1) an invalid request or (2) a large amount of data sent to the registered attribute value.
network
low complexity
fujitsu CWE-119
5.0
2007-10-11 CVE-2007-5366 Path Traversal vulnerability in Fujitsu products
The Tomcat 4.1-based Servlet Service in Fujitsu Interstage Application Server 7.0 through 9.0.0 and Interstage Apworks/Studio 7.0 through 9.0.0 allows remote attackers to obtain sensitive information (web root path) via unspecified vectors that trigger an error message, probably related to enabling the useCanonCaches Java Virtual Machine (JVM) option.
network
low complexity
fujitsu CWE-22
5.0
2007-07-05 CVE-2007-3012 Information Disclosure vulnerability in Fujitsu PRIMERGY BX300 Blade Server
The web interface in Fujitsu-Siemens Computers PRIMERGY BX300 Switch Blade allows remote attackers to obtain sensitive information by canceling the authentication dialog when accessing a sub-page, which still displays the form field contents of the sub-page, as demonstrated using (1) config/ip_management.htm and (2) config/snmp_config.htm.
network
low complexity
fujitsu
5.0
2007-03-19 CVE-2007-1504 Cross-Site Scripting vulnerability in iNTERSTAGE Application Server Standard Edition
Cross-site scripting (XSS) vulnerability in the Servlet Service in Fujitsu Interstage Application Server (IJServer) 8.0.2 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, possibly involving web.xml and HTTP 404 and 500 status codes.
network
fujitsu
4.3
2006-07-13 CVE-2006-3579 Cross-Site Scripting vulnerability in Fujitsu Serverview
Cross-site scripting (XSS) vulnerability in Fujitsu ServerView 2.50 up to 3.60L98 and 4.10L11 up to 4.11L81 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
fujitsu CWE-79
4.3
2006-07-13 CVE-2006-3578 Directory Traversal vulnerability in Fujitsu Serverview 2.50
Directory traversal vulnerability in Fujitsu ServerView 2.50 up to 3.60L98 and 4.10L11 up to 4.11L81 allows remote attackers to read arbitrary files via unspecified vectors.
network
low complexity
fujitsu
5.0
2006-05-09 CVE-2006-2240 DNS Denial Of Service vulnerability in Fujitsu NetShelter
Unspecified vulnerability in the (1) web cache or (2) web proxy in Fujitsu NetShelter/FW allows remote attackers to cause a denial of service (device unresponsiveness) via certain DNS packets, as demonstrated by the OUSPG PROTOS DNS test suite.
network
low complexity
fujitsu
5.0
2002-12-31 CVE-2002-2212 Remote Security vulnerability in BIND
The DNS resolver in unspecified versions of Fujitsu UXP/V, when resolving recursive DNS queries for arbitrary hosts, allows remote attackers to conduct DNS cache poisoning via a birthday attack that uses a large number of open queries for the same resource record (RR) combined with spoofed responses, which increases the possibility of successfully spoofing a response in a way that is more efficient than brute force methods.
network
low complexity
isc fujitsu
5.0
1999-08-01 CVE-1999-0672 Unspecified vulnerability in Fujitsu Chocoa 1.0Beta7R
Buffer overflow in Fujitsu Chocoa IRC client via IRC channel topics.
network
high complexity
fujitsu
5.1