Filtered by vendor Cybozu Subscriptions
Filtered by product Remote Service Manager Subscriptions
Total 22 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2014-7266 1 Cybozu 1 Remote Service Manager 2024-08-06 N/A
Algorithmic complexity vulnerability in Cybozu Remote Service Manager through 2.3.0 and 3.x through 3.1.2 allows remote attackers to cause a denial of service (CPU consumption) via vectors that trigger colliding hash-table keys. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-1983.
CVE-2014-1984 1 Cybozu 1 Remote Service Manager 2024-08-06 N/A
Session fixation vulnerability in the management screen in Cybozu Remote Service Manager through 2.3.0 and 3.x before 3.1.1 allows remote attackers to hijack web sessions via unspecified vectors.
CVE-2014-1983 1 Cybozu 1 Remote Service Manager 2024-08-06 N/A
Unspecified vulnerability in Cybozu Remote Service Manager through 2.3.0 and 3.x before 3.1.1 allows remote attackers to cause a denial of service (CPU consumption) via unknown vectors.
CVE-2016-7815 1 Cybozu 1 Remote Service Manager 2024-08-06 N/A
Remote Service Manager 3.0.0 to 3.1.4 fails to verify client certificates, which may allow remote attackers to gain access to systems on the network.
CVE-2018-16172 1 Cybozu 1 Remote Service Manager 2024-08-05 N/A
Improper countermeasure against clickjacking attack in client certificates management screen was discovered in Cybozu Remote Service 3.0.0 to 3.1.8, that allows remote attackers to trick a user to delete the registered client certificate.
CVE-2018-16169 1 Cybozu 1 Remote Service Manager 2024-08-05 N/A
Cybozu Remote Service 3.0.0 to 3.1.0 allows remote authenticated attackers to upload and execute Java code file on the server via unspecified vectors.
CVE-2018-16170 2 Cybozu, Microsoft 2 Remote Service Manager, Windows 2024-08-05 N/A
Directory traversal vulnerability in Cybozu Remote Service 3.0.0 to 3.1.8 for Windows allows remote authenticated attackers to read arbitrary files via unspecified vectors.
CVE-2018-16171 2 Cybozu, Microsoft 2 Remote Service Manager, Windows 2024-08-05 N/A
Directory traversal vulnerability in Cybozu Remote Service 3.0.0 to 3.1.8 allows remote attackers to execute Java code file on the server via unspecified vectors.
CVE-2021-20797 1 Cybozu 1 Remote Service Manager 2024-08-03 5.4 Medium
Cross-site script inclusion vulnerability in the management screen of Cybozu Remote Service 3.1.8 allows a remote authenticated attacker to obtain the information stored in the product. This issue occurs only when using Mozilla Firefox.
CVE-2021-20795 1 Cybozu 1 Remote Service Manager 2024-08-03 8.8 High
Cross-site request forgery (CSRF) vulnerability in the management screen of Cybozu Remote Service 3.1.8 to 3.1.9 allows a remote attacker to hijack the authentication of administrators and unintended operations may be performed via unspecified vectors.
CVE-2021-20804 1 Cybozu 1 Remote Service Manager 2024-08-03 6.5 Medium
Cybozu Remote Service 3.1.8 to 3.1.9 allows a remote authenticated attacker to cause a denial of service (DoS) condition via unspecified vectors.
CVE-2021-20798 1 Cybozu 1 Remote Service Manager 2024-08-03 5.4 Medium
Cross-site scripting vulnerability in the management screen of Cybozu Remote Service 3.1.8 to 3.1.9 allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors.
CVE-2021-20801 1 Cybozu 1 Remote Service Manager 2024-08-03 6.5 Medium
Cybozu Remote Service 3.1.8 to 3.1.9 allows a remote authenticated attacker to conduct XML External Entity (XXE) attacks and obtain the information stored in the product via unspecified vectors. This issue occurs only when using Mozilla Firefox.
CVE-2021-20805 1 Cybozu 1 Remote Service Manager 2024-08-03 5.4 Medium
Cross-site scripting vulnerability in the management screen of Cybozu Remote Service 3.1.7 to 3.1.9 allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors.
CVE-2021-20807 1 Cybozu 1 Remote Service Manager 2024-08-03 6.1 Medium
Cross-site scripting vulnerability in the management screen of Cybozu Remote Service 3.0.0 to 3.1.9 allows a remote attacker to inject an arbitrary script via unspecified vectors.
CVE-2021-20802 1 Cybozu 1 Remote Service Manager 2024-08-03 5.3 Medium
HTTP header injection vulnerability in Cybozu Remote Service 3.1.8 to 3.1.9 allows a remote attacker to alter the information stored in the product.
CVE-2021-20799 1 Cybozu 1 Remote Service Manager 2024-08-03 5.4 Medium
Cross-site scripting vulnerability in the management screen of Cybozu Remote Service 3.1.8 to 3.1.9 allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors.
CVE-2021-20796 1 Cybozu 1 Remote Service Manager 2024-08-03 6.5 Medium
Directory traversal vulnerability in the management screen of Cybozu Remote Service 3.1.8 allows a remote authenticated attacker to upload an arbitrary file via unspecified vectors.
CVE-2021-20806 1 Cybozu 1 Remote Service Manager 2024-08-03 6.1 Medium
Open redirect vulnerability in Cybozu Remote Service 3.0.0 to 3.1.9 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
CVE-2021-20800 1 Cybozu 1 Remote Service Manager 2024-08-03 5.4 Medium
Cross-site scripting vulnerability in the management screen of Cybozu Remote Service 3.1.8 allows a remote authenticated attacker to inject an arbitrary script via unspecified vectors.