Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Kddi Subscribe
Filtered by product Home Spot Cube Firmware
Total 6 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2016-1138 1 Kddi 2 Home Spot Cube, Home Spot Cube Firmware 2016-02-10 4.3 MEDIUM 4.7 MEDIUM
CRLF injection vulnerability on KDDI HOME SPOT CUBE devices before 2 allows remote attackers to inject arbitrary HTTP headers via unspecified vectors.
CVE-2016-1140 1 Kddi 2 Home Spot Cube, Home Spot Cube Firmware 2016-02-10 4.3 MEDIUM 6.1 MEDIUM
KDDI HOME SPOT CUBE devices before 2 allow remote attackers to conduct clickjacking attacks via unspecified vectors.
CVE-2016-1139 1 Kddi 2 Home Spot Cube, Home Spot Cube Firmware 2016-02-10 6.8 MEDIUM 7.5 HIGH
Cross-site request forgery (CSRF) vulnerability on KDDI HOME SPOT CUBE devices before 2 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
CVE-2016-1137 1 Kddi 2 Home Spot Cube, Home Spot Cube Firmware 2016-02-10 5.8 MEDIUM 7.4 HIGH
Open redirect vulnerability on KDDI HOME SPOT CUBE devices before 2 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
CVE-2016-1136 1 Kddi 2 Home Spot Cube, Home Spot Cube Firmware 2016-02-10 3.5 LOW 5.4 MEDIUM
Cross-site scripting (XSS) vulnerability on KDDI HOME SPOT CUBE devices before 2 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
CVE-2016-1141 1 Kddi 2 Home Spot Cube, Home Spot Cube Firmware 2016-02-02 6.5 MEDIUM 4.7 MEDIUM
KDDI HOME SPOT CUBE devices before 2 allow remote authenticated users to execute arbitrary OS commands via unspecified vectors.