Vulnerabilities > LG Project

DATE CVE VULNERABILITY TITLE RISK
2017-04-03 CVE-2014-3930 Improper Access Control vulnerability in LG Project LG 1.01
lg.pl in Cistron-LG 1.01 stores sensitive information under the web root with insufficient access controls, which allows remote attackers to obtain IP addresses and other unspecified router credentials.
network
low complexity
lg-project CWE-284
7.5
2017-04-03 CVE-2014-3929 Improper Access Control vulnerability in LG Project LG
The default configuration for Cougar-LG stores sensitive information under the web root with insufficient access control, which might allow remote attackers to obtain private ssh keys.
network
low complexity
lg-project CWE-284
7.5
2017-04-03 CVE-2014-3928 Improper Access Control vulnerability in LG Project LG
Cougar-LG stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain credentials.
network
low complexity
lg-project CWE-284
critical
9.8
2017-03-13 CVE-2014-3926 Cross-site Scripting vulnerability in LG Project LG
Cross-site scripting (XSS) vulnerability in lg.cgi in Cougar LG 1.9 allows remote attackers to inject arbitrary web script or HTML via the "addr" parameter.
network
low complexity
lg-project CWE-79
6.1