|
247691
|
5.9 |
MEDIUM
Network
|
kddi ntttocomo softbank ntt_tocomo
|
\+_message
|
Multiple +Message Apps (Softbank +Message App for Android prior to version 10.1.7, Softbank +Message App for iOS prior to version 1.1.23, NTT DOCOMO +Message App for Android prior to version 42.40.28…
|
CWE-295
Improper Certificate Validation
|
CVE-2018-0691
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247692
|
7.5 |
HIGH
Network
|
sony
|
music_center_for_pc
|
An unvalidated software update vulnerability in Music Center for PC version 1.0.02 and earlier could allow a man-in-the-middle attacker to tamper with an update file and inject executable files.
|
NVD-CWE-noinfo
|
CVE-2018-0690
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247693
|
6.1 |
MEDIUM
Network
|
neo
|
debun_pop debun_imap
|
Cross-site scripting vulnerability in Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R4.0 and earlier, Denbun IMAP version V3.3I R4.0 and earlier) allows remote attackers to inject arbitrary web s…
|
CWE-79
Cross-site Scripting
|
CVE-2018-0687
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247694
|
8.8 |
HIGH
Network
|
neo
|
debun_pop debun_imap
|
Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R4.0 and earlier, Denbun IMAP version V3.3I R4.0 and earlier) allows remote authenticated attackers to upload and execute any executable files via un…
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2018-0686
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247695
|
8.8 |
HIGH
Network
|
neo
|
debun_pop
|
SQL injection vulnerability in the Denbun POP version V3.3P R4.0 and earlier allows remote authenticated attackers to execute arbitrary SQL commands via HTTP requests for mail search.
|
CWE-89
SQL Injection
|
CVE-2018-0685
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247696
|
9.8 |
CRITICAL
Network
|
neo
|
debun_pop debun_imap
|
Buffer overflow in Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R3.0 and earlier, Denbun IMAP version V3.3I R3.0 and earlier) allows remote attackers to execute arbitrary code or cause a denial-…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-0684
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247697
|
9.8 |
CRITICAL
Network
|
neo
|
debun_pop debun_imap
|
Buffer overflow in Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R4.0 and earlier, Denbun IMAP version V3.3I R4.0 and earlier) allows remote attackers to execute arbitrary code or cause a denial-…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-0683
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247698
|
9.8 |
CRITICAL
Network
|
neo
|
debun_pop debun_imap
|
Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R4.0 and earlier, Denbun IMAP version V3.3I R4.0 and earlier) does not properly manage sessions, which allows remote attackers to read/send mail or c…
|
NVD-CWE-noinfo
|
CVE-2018-0682
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247699
|
9.8 |
CRITICAL
Network
|
neo
|
debun_pop debun_imap
|
Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R4.0 and earlier, Denbun IMAP version V3.3I R4.0 and earlier) uses hard-coded credentials, which may allow remote attackers to login to the Managemen…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2018-0681
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247700
|
9.8 |
CRITICAL
Network
|
neo
|
debun_pop debun_imap
|
Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R4.0 and earlier, Denbun IMAP version V3.3I R4.0 and earlier) uses hard-coded credentials, which may allow remote attackers to read/send mail or chan…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2018-0680
|
2024-11-21 12:38 |
2018-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|