Vulnerabilities > Iodata > Low

DATE CVE VULNERABILITY TITLE RISK
2017-04-28 CVE-2017-2148 Cross-site Scripting vulnerability in Iodata Wn-Ac1167Gr Firmware
Cross-site scripting vulnerability in WN-AC1167GR firmware version 1.04 and earlier allows remote authenticated attackers to inject arbitrary web script or HTML via unspecified vectors.
network
iodata CWE-79
3.5
2017-04-13 CVE-2014-3887 Cross-site Scripting vulnerability in Iodata Rockdisk Firmware
Cross-site scripting (XSS) vulnerability in I-O DATA DEVICE RockDisk with firmware before 1.05e1-2.0.5 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
network
iodata CWE-79
3.5
2016-05-14 CVE-2016-1206 Information Exposure vulnerability in Iodata Wn-Gdn/R3 Firmware
The WPS implementation on I-O DATA DEVICE WN-GDN/R3, WN-GDN/R3-C, WN-GDN/R3-S, and WN-GDN/R3-U devices does not limit PIN guesses, which allows remote attackers to obtain network access via a brute-force attack.
low complexity
iodata CWE-200
3.3
2016-05-14 CVE-2016-1207 Cross-site Scripting vulnerability in Iodata products
Cross-site scripting (XSS) vulnerability on I-O DATA DEVICE WN-G300R devices with firmware 1.12 and earlier, WN-G300R2 devices with firmware 1.12 and earlier, and WN-G300R3 devices with firmware 1.01 and earlier allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
network
iodata CWE-79
3.5
2013-11-01 CVE-2013-4713 Cross-Site Scripting vulnerability in Iodata Rockdisk and Rockdisk Firmware
Cross-site scripting (XSS) vulnerability in I-O DATA DEVICE RockDisk with firmware before 1.05e1-2.0.5 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
network
iodata CWE-79
3.5