
CVE-2013-2270
https://notcve.org/view.php?id=CVE-2013-2270
07 Mar 2014 — Cross-site scripting (XSS) vulnerability in the administration page in Airvana HubBub C1-600-RT and Sprint AIRAVE 2.5 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. Vulnerabilidad de XSS en la página de administración en Airvana HubBub C1-600-RT y Sprint AIRAVE 2.5 permite a atacantes remotos inyectar script Web o HTML arbitrarios a través de vectores no especificados. • http://archives.neohapsis.com/archives/bugtraq/2013-02/0155.html • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVE-2012-2980
https://notcve.org/view.php?id=CVE-2012-2980
21 Aug 2012 — The Samsung and HTC onTouchEvent method implementation for Android on the T-Mobile myTouch 3G Slide, HTC Merge, Sprint EVO Shift 4G, HTC ChaCha, AT&T Status, HTC Desire Z, T-Mobile G2, T-Mobile myTouch 4G Slide, and Samsung Galaxy S stores touch coordinates in the dmesg buffer, which allows remote attackers to obtain sensitive information via a crafted application, as demonstrated by PIN numbers, telephone numbers, and text messages. El método de implementación onTouchEvent en Samsumg y HTC para Android en ... • http://www.htc.com/www/help/app-security-fix • CWE-255: Credentials Management Errors •

CVE-2007-1821
https://notcve.org/view.php?id=CVE-2007-1821
02 Apr 2007 — Sprint Nextel Sprint voice mail systems allow remote attackers to retrieve or remove messages, or reconfigure mailboxes, by spoofing Calling Number Identification (CNID, aka Caller ID). Los sistemas de correo de voz Sprint Nextel Sprint permite a atacantes remotos obtener o borrar mensajes, o reconfigurar buzones de correo, suplantando la Identificación de Número Entrante (CNID, Calling Number Identification o Caller ID) • http://osvdb.org/34984 •