You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Feb. 3, 2025, 1:14 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
187391 | 4.3 | 警告 | 有限会社ビーグラフ | - | BeZIP 日本語対応版におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2012-5171 | 2012-11-7 14:00 | 2012-11-7 | Show | GitHub Exploit DB Packet Storm |
187392 | 6.8 | 警告 | リアルネットワークス | - | RealNetworks RealPlayer におけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2012-4987 | 2012-11-6 14:36 | 2012-11-4 | Show | GitHub Exploit DB Packet Storm |
187393 | 3.6 | 注意 | アップル | - | Apple iOS 6.0.1 未満のパスコードロックの実装におけるパスコード要求を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2012-3750 | 2012-11-6 14:33 | 2012-11-3 | Show | GitHub Exploit DB Packet Storm |
187394 | 6.8 | 警告 | Irfan Skiljan | - | IrfanView 用 FlashPix PlugIn で使用される libfpx におけるメモリ二重解放の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2012-0025 | 2012-11-6 14:23 | 2012-11-2 | Show | GitHub Exploit DB Packet Storm |
187395 | 7.5 | 危険 | Morbus Iff | - | Drupal 用 Activism モジュールにおけるアクセス制限を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2012-4498 | 2012-11-6 14:21 | 2012-08-29 | Show | GitHub Exploit DB Packet Storm |
187396 | 2.1 | 注意 | Devsaran | - | Drupal 用 Elegant Theme モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-4497 | 2012-11-6 14:19 | 2012-08-15 | Show | GitHub Exploit DB Packet Storm |
187397 | 2.1 | 注意 | Roy Baxter | - | Drupal 用 Better Revisions モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-4493 | 2012-11-6 14:18 | 2012-08-8 | Show | GitHub Exploit DB Packet Storm |
187398 | 4 | 警告 | Boombatower | - | Drupal 用 Subuser モジュールにおけるロールを変更される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2012-4487 | 2012-11-6 14:07 | 2012-07-25 | Show | GitHub Exploit DB Packet Storm |
187399 | 6.8 | 警告 | Boombatower | - | Drupal 用 Subuser モジュールにおけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2012-4486 | 2012-11-6 14:04 | 2012-07-25 | Show | GitHub Exploit DB Packet Storm |
187400 | 7.5 | 危険 | Curtis Galloway | - | libexif の exif-entry.c の exif_entry_get_value 関数における整数アンダーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2012-2841 | 2012-11-6 12:28 | 2012-07-12 | Show | GitHub Exploit DB Packet Storm |
Update Date:Feb. 7, 2025, 4:09 a.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
171 | 7.8 |
HIGH
Local |
qualcomm |
fastconnect_6900_firmware fastconnect_7800_firmware qcm8550_firmware qcs6490_firmware video_collaboration_vc3_platform_firmware sm6650_firmware sm7635_firmware sm7675_firmware | Memory corruption while validating number of devices in Camera kernel . New |
CWE-129
Improper Validation of Array Index |
CVE-2024-45582 | 2025-02-6 01:01 | 2025-02-4 | Show | GitHub Exploit DB Packet Storm |
172 | 7.8 |
HIGH
Local |
qualcomm |
fastconnect_6700_firmware fastconnect_6900_firmware fastconnect_7800_firmware qcm5430_firmware qcm6490_firmware qcs5430_firmware qcs6490_firmware video_collaboration_vc3_platform… |
Memory corruption may occour while generating test pattern due to negative indexing of display ID. New |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2024-45573 | 2025-02-6 01:01 | 2025-02-4 | Show | GitHub Exploit DB Packet Storm |
173 | 7.8 |
HIGH
Local |
qualcomm |
ar8035_firmware csr8811_firmware fastconnect_6700_firmware fastconnect_6900_firmware fastconnect_7800_firmware immersive_home_214_firmware immersive_home_216_firmware immersive_h… |
Memory corruption may occour occur when stopping the WLAN interface after processing a WMI command from the interface. New |
CWE-416
Use After Free |
CVE-2024-45571 | 2025-02-6 01:01 | 2025-02-4 | Show | GitHub Exploit DB Packet Storm |
174 | - | - | - | A vulnerability was discovered in the firmware builds up to 8.2.1.0820 in Poly Edge E devices. The firmware flaw does not properly prevent path traversal and could lead to information disclosure. New | - | CVE-2025-0858 | 2025-02-6 00:15 | 2025-02-6 | Show | GitHub Exploit DB Packet Storm | |
175 | - | - | - | libcurl would wrongly close the same eventfd file descriptor twice when taking down a connection channel after having completed a threaded name resolve. New | - | CVE-2025-0665 | 2025-02-6 00:15 | 2025-02-5 | Show | GitHub Exploit DB Packet Storm | |
176 | - | - | - | Omnissa Horizon Client for macOS contains a Local privilege escalation (LPE) Vulnerability due to a logic flaw. Successful exploitation of this issue may allow attackers with user privileges to escal… New | - | CVE-2024-11467 | 2025-02-6 00:15 | 2025-02-5 | Show | GitHub Exploit DB Packet Storm | |
177 | 5.4 |
MEDIUM
Network |
hasthemes | ht_mega | The HT Mega – Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'block_css' and 'inner_css' parameters in all versions up to, and including, 2.7.… New |
CWE-79
Cross-site Scripting |
CVE-2024-12597 | 2025-02-5 23:58 | 2025-02-4 | Show | GitHub Exploit DB Packet Storm |
178 | - | - | - | Dell Avamar, version 19.4 or later, contains an access token reuse vulnerability in the AUI. A low privileged local attacker could potentially exploit this vulnerability, leading to fully impersonati… New |
CWE-672
Operation on a Resource after Expiration or Release |
CVE-2025-21117 | 2025-02-5 23:15 | 2025-02-5 | Show | GitHub Exploit DB Packet Storm | |
179 | 7.5 |
HIGH
Network
qualcomm
|
ar8035_firmware |
fastconnect_7800_firmware qca6584au_firmware qca6698aq_firmware qca8081_firmware qca8337_firmware qcc710_firmware qcn6224_firmware qcn6274_firmware qfw7114_…
Transient DOS when registration accept OTA is received with incorrect ciphering key data IE in modem.
New
|
CWE-125
|
Out-of-bounds Read
CVE-2024-38404
|
2025-02-5 22:59 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
180 | 7.8 |
HIGH
Local |
qualcomm |
fastconnect_7800_firmware snapdragon_8_gen_3_mobile_firmware wcd9390_firmware wcd9395_firmware wsa8840_firmware wsa8845_firmware wsa8845h_firmware |
Memory corruption while processing frame packets. New |
CWE-787
Out-of-bounds Write |
CVE-2024-38413 | 2025-02-5 22:58 | 2025-02-4 | Show | GitHub Exploit DB Packet Storm |