Vulnerabilities > Sharp

DATE CVE VULNERABILITY TITLE RISK
2017-06-09 CVE-2017-2192 Untrusted Search Path vulnerability in Sharp Rw-5100 1.1.0.0/1.2.0.0
Untrusted search path vulnerability in RW-5100 tool to verify execution environment for Windows 7 version 1.1.0.0 and RW-5100 tool to verify execution environment for Windows 8.1 version 1.2.0.0 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
sharp CWE-426
7.8
2017-06-09 CVE-2017-2191 Untrusted Search Path vulnerability in Sharp products
Untrusted search path vulnerability in RW-5100 driver installer for Windows 7 version 1.0.0.9 and RW-5100 driver installer for Windows 8.1 version 1.0.1.0 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
sharp CWE-426
7.8
2017-06-09 CVE-2017-2190 Untrusted Search Path vulnerability in Sharp Rw-4040 1.2.0.0
Untrusted search path vulnerability in RW-4040 tool to verify execution environment for Windows 7 version 1.2.0.0 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
sharp CWE-426
7.8
2017-06-09 CVE-2017-2189 Untrusted Search Path vulnerability in Sharp Rw-4040 2.27
Untrusted search path vulnerability in RW-4040 driver installer for Windows 7 version 2.27 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
sharp CWE-426
7.8
2016-04-05 CVE-2016-1176 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Sharp EVA Animator
Buffer overflow in the ActiveX control in Sharp EVA Animeter allows remote attackers to execute arbitrary code via a crafted web page.
network
low complexity
sharp CWE-119
6.3
2016-04-05 CVE-2016-1175 Cross-Site Request Forgery (CSRF) vulnerability in Sharp Aquos Hn-Pp150 Firmware 1.02.00.04/1.03.01.04
Cross-site request forgery (CSRF) vulnerability in AQUOS Photo Player HN-PP150 1.02.00.04 through 1.03.01.04 allows remote attackers to hijack the authentication of arbitrary users.
network
low complexity
sharp CWE-352
4.3
2002-12-31 CVE-2002-1975 Inadequate Encryption Strength vulnerability in Sharp Zaurus Sl-5000D Firmware and Zaurus Sl-5500 Firmware
Sharp Zaurus PDA SL-5000D and SL-5500 uses a salt of "A0" to encrypt the screen-locking password as stored in the Security.conf file, which makes it easier for local users to guess the password via brute force methods.
local
low complexity
sharp CWE-326
5.5