Vulnerabilities (CVE)

Filtered by vendor Kddi Subscribe
Filtered by product Home Spot Cube Firmware
Total 6 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2016-1136 1 Kddi 2 Home Spot Cube, Home Spot Cube Firmware 2023-12-10 3.5 LOW 5.4 MEDIUM
Cross-site scripting (XSS) vulnerability on KDDI HOME SPOT CUBE devices before 2 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
CVE-2016-1137 1 Kddi 2 Home Spot Cube, Home Spot Cube Firmware 2023-12-10 5.8 MEDIUM 7.4 HIGH
Open redirect vulnerability on KDDI HOME SPOT CUBE devices before 2 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
CVE-2016-1140 1 Kddi 2 Home Spot Cube, Home Spot Cube Firmware 2023-12-10 4.3 MEDIUM 6.1 MEDIUM
KDDI HOME SPOT CUBE devices before 2 allow remote attackers to conduct clickjacking attacks via unspecified vectors.
CVE-2016-1139 1 Kddi 2 Home Spot Cube, Home Spot Cube Firmware 2023-12-10 6.8 MEDIUM 7.5 HIGH
Cross-site request forgery (CSRF) vulnerability on KDDI HOME SPOT CUBE devices before 2 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
CVE-2016-1141 1 Kddi 2 Home Spot Cube, Home Spot Cube Firmware 2023-12-10 6.5 MEDIUM 4.7 MEDIUM
KDDI HOME SPOT CUBE devices before 2 allow remote authenticated users to execute arbitrary OS commands via unspecified vectors.
CVE-2016-1138 1 Kddi 2 Home Spot Cube, Home Spot Cube Firmware 2023-12-10 4.3 MEDIUM 4.7 MEDIUM
CRLF injection vulnerability on KDDI HOME SPOT CUBE devices before 2 allows remote attackers to inject arbitrary HTTP headers via unspecified vectors.