You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Nov. 8, 2024, 6 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
188721 | 4.3 | 警告 | Miles Johnson | - | Decoda の decoda/templates/video.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-3831 | 2012-07-5 14:35 | 2012-07-3 | Show | GitHub Exploit DB Packet Storm |
188722 | 4.3 | 警告 | Miles Johnson | - | Decoda の decoda/templates/video.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-3830 | 2012-07-5 14:28 | 2012-07-3 | Show | GitHub Exploit DB Packet Storm |
188723 | 5 | 警告 | Joomla! | - | Joomla! におけるインストールパスを取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2012-3829 | 2012-07-5 14:23 | 2012-07-3 | Show | GitHub Exploit DB Packet Storm |
188724 | 4.3 | 警告 | Joomla! | - | Joomla! におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-3828 | 2012-07-5 14:22 | 2012-07-3 | Show | GitHub Exploit DB Packet Storm |
188725 | 2.1 | 注意 | Fedora Project | - | Anacond のブートローダ設定モジュールにおけるパスワードハッシュを取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2012-2314 | 2012-07-5 14:09 | 2012-05-10 | Show | GitHub Exploit DB Packet Storm |
188726 | 2.6 | 注意 | Ned T. Crigler | - | dtach の attach.cにおける整数符号エラーの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2012-3368 | 2012-07-5 14:00 | 2012-07-3 | Show | GitHub Exploit DB Packet Storm |
188727 | 5 | 警告 | IBM | - | IBM WebSphere Portal の Dojo モジュールにおけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2012-2181 | 2012-07-5 13:57 | 2012-07-3 | Show | GitHub Exploit DB Packet Storm |
188728 | 10 | 危険 | アバイア | - | Avaya Aura Application Server 5300 におけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2011-5096 | 2012-07-5 13:46 | 2011-08-2 | Show | GitHub Exploit DB Packet Storm |
188729 | 10 | 危険 | アバイア | - | Avaya IP Office Customer Call Reporter における任意のコードを実行される脆弱性 |
CWE-Other
その他 |
CVE-2012-3811 | 2012-07-5 13:44 | 2012-06-28 | Show | GitHub Exploit DB Packet Storm |
188730 | 5 | 警告 | Joomla! | - | Joomla! における重要な情報を取得される脆弱性 |
CWE-noinfo
情報不足 |
CVE-2012-2748 | 2012-07-5 11:57 | 2012-06-18 | Show | GitHub Exploit DB Packet Storm |
Update Date:Nov. 8, 2024, 4:18 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
71 | 6.1 |
MEDIUM
Network |
kibokolabs | namaste\!_lms | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Kiboko Labs Namaste! LMS allows Reflected XSS.This issue affects Namaste! LMS: from n/a th… Update |
CWE-79
Cross-site Scripting |
CVE-2024-50407 | 2024-11-8 05:28 | 2024-10-29 | Show | GitHub Exploit DB Packet Storm |
72 | 8.2 |
HIGH
Local |
intel | thunderbolt_dch_driver | Improper access control in the Intel(R) Thunderbolt(TM) DCH drivers for Windows may allow an authenticated user to potentially enable escalation of privilege via local access. Update |
NVD-CWE-noinfo
|
CVE-2023-22293 | 2024-11-8 05:27 | 2024-02-14 | Show | GitHub Exploit DB Packet Storm |
73 | - | - | - | A vulnerability was found in 1000 Projects Bookstore Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /admin/login_process.php of… New | - | CVE-2024-10969 | 2024-11-8 05:15 | 2024-11-8 | Show | GitHub Exploit DB Packet Storm | |
74 | - | - | - | A vulnerability was found in 1000 Projects Bookstore Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /contact_process.p… New |
CWE-89 CWE-74 SQL Injection Injection |
CVE-2024-10968 | 2024-11-8 05:15 | 2024-11-8 | Show | GitHub Exploit DB Packet Storm | |
75 | 6.5 |
MEDIUM
Network |
qualcomm |
wsa8845h_firmware wsa8845_firmware wsa8840_firmware wsa8835_firmware wsa8832_firmware wsa8830_firmware wcn7881_firmware wcn7880_firmware wcn7861_firmware wcn7860_firmware | Transient DOS while parsing fragments of MBSSID IE from beacon frame. Update |
CWE-416
Use After Free |
CVE-2024-33068 | 2024-11-8 05:07 | 2024-11-4 | Show | GitHub Exploit DB Packet Storm |
76 | 6.5 |
MEDIUM
Network |
qualcomm |
wsa8845h_firmware wsa8845_firmware wsa8840_firmware wsa8835_firmware wsa8832_firmware wsa8830_firmware wcn7881_firmware wcn7880_firmware wcn7861_firmware wcn7860_firmware | Transient DOS while processing the CU information from RNR IE. Update |
CWE-125
Out-of-bounds Read |
CVE-2024-38405 | 2024-11-8 05:06 | 2024-11-4 | Show | GitHub Exploit DB Packet Storm |
77 | 6.5 |
MEDIUM
Network |
qualcomm |
wsa8845h_firmware wsa8845_firmware wsa8840_firmware wsa8835_firmware wsa8832_firmware wsa8830_firmware wcn7881_firmware wcn7880_firmware wcn7861_firmware wcn7860_firmware | Transient DOS while parsing BTM ML IE when per STA profile is not included. Update |
CWE-125
Out-of-bounds Read |
CVE-2024-38403 | 2024-11-8 05:06 | 2024-11-4 | Show | GitHub Exploit DB Packet Storm |
78 | 6.5 |
MEDIUM
Network |
qualcomm |
wsa8845h_firmware wsa8845_firmware wsa8840_firmware wsa8835_firmware wsa8832_firmware wsa8830_firmware wsa8815_firmware wsa8810_firmware wcn6755_firmware wcn3988_firmware | Transient DOS as modem reset occurs when an unexpected MAC RAR (with invalid PDU length) is seen at UE. Update |
CWE-617
Reachable Assertion |
CVE-2024-23385 | 2024-11-8 05:05 | 2024-11-4 | Show | GitHub Exploit DB Packet Storm |
79 | 6.7 |
MEDIUM
Local |
qualcomm |
wsa8835_firmware wsa8830_firmware wcd9380_firmware wcd9340_firmware snapdragon_x75_5g_modem-rf_system_firmware snapdragon_x72_5g_modem-rf_system_firmware snapdragon_auto_5g_modem-rf… |
Memory corruption while parsing IPC frequency table parameters for LPLH that has size greater than expected size. Update |
CWE-120
Classic Buffer Overflow |
CVE-2024-33030 | 2024-11-8 05:04 | 2024-11-4 | Show | GitHub Exploit DB Packet Storm |
80 | 7.5 |
HIGH
Network
huawei
|
harmonyos
|
Information management vulnerability in the Gallery module
Impact: Successful exploitation of this vulnerability may affect service confidentiality.
New
|
NVD-CWE-noinfo
|
CVE-2024-51523
|
2024-11-8 05:03 |
2024-11-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|