You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Nov. 8, 2024, 6 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
188771 | 5 | 警告 | Mikel Olasagasti | - | Revelation におけるパスワードを推測される脆弱性 |
CWE-255
証明書・パスワード管理 |
CVE-2012-2743 | 2012-07-2 11:45 | 2012-06-27 | Show | GitHub Exploit DB Packet Storm |
188772 | 5 | 警告 | Mikel Olasagasti | - | Revelation におけるパスワードを解読される脆弱性 |
CWE-255
証明書・パスワード管理 |
CVE-2012-2742 | 2012-07-2 11:41 | 2012-06-27 | Show | GitHub Exploit DB Packet Storm |
188773 | 7.8 | 危険 | Elite Research | - | WinRadius サーバにおけるサービス運用妨害 (クラッシュ) の脆弱性 |
CWE-noinfo
情報不足 |
CVE-2012-3816 | 2012-07-2 11:34 | 2012-06-27 | Show | GitHub Exploit DB Packet Storm |
188774 | 7.5 | 危険 | Pippin Williamson | - | WordPress 用 Font Uploader プラグインの font-upload.php における任意の PHP コードを実行される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2012-3814 | 2012-07-2 11:33 | 2012-06-27 | Show | GitHub Exploit DB Packet Storm |
188775 | 4.3 | 警告 | Coldfront Labs | - | Drupal 用の Mobile Tools モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-2717 | 2012-07-2 11:25 | 2012-05-30 | Show | GitHub Exploit DB Packet Storm |
188776 | 7.5 | 危険 | strongSwan | - | strongSwan の GMP プラグインにおける認証を回避される脆弱性 |
CWE-287
不適切な認証 |
CVE-2012-2388 | 2012-07-2 11:10 | 2012-05-31 | Show | GitHub Exploit DB Packet Storm |
188777 | 5 | 警告 | WordPress.org | - | WordPress の wp-includes/formatting.php におけるサービス運用妨害 (クラッシュ) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2011-4957 | 2012-07-2 11:08 | 2011-04-5 | Show | GitHub Exploit DB Packet Storm |
188778 | 4.3 | 警告 | WordPress.org | - | WordPress におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-4956 | 2012-07-2 11:00 | 2011-04-5 | Show | GitHub Exploit DB Packet Storm |
188779 | 4 | 警告 | Peter Pokrivcak | - | Drupal 用 Post Affiliate Pro モジュールにおける他のユーザのコミッションを読まれる脆弱性 |
CWE-noinfo
情報不足 |
CVE-2012-3802 | 2012-07-2 10:59 | 2012-05-16 | Show | GitHub Exploit DB Packet Storm |
188780 | 3.3 | 注意 | Wireshark | - | Wireshark の IEEE 802.11 解析機能におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-94
コード・インジェクション |
CVE-2012-1594 | 2012-06-29 18:57 | 2012-03-27 | Show | GitHub Exploit DB Packet Storm |
Update Date:Nov. 8, 2024, 4:18 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
101 | 7.8 |
HIGH
Local |
qualcomm |
wsa8845h_firmware wsa8845_firmware wsa8840_firmware wsa8835_firmware wsa8832_firmware wsa8830_firmware wsa8815_firmware wsa8810_firmware wcn6755_firmware wcn3990_firmware | Memory corruption while invoking IOCTL calls from the use-space for HGSL memory node. Update |
CWE-416
Use After Free |
CVE-2024-38419 | 2024-11-8 04:44 | 2024-11-4 | Show | GitHub Exploit DB Packet Storm |
102 | 5.5 |
MEDIUM
Local |
huawei | harmonyos | Vulnerability of pop-up windows belonging to no app in the VPN module Impact: Successful exploitation of this vulnerability may affect service confidentiality. New |
NVD-CWE-noinfo
|
CVE-2024-51514 | 2024-11-8 04:43 | 2024-11-5 | Show | GitHub Exploit DB Packet Storm |
103 | 5.5 |
MEDIUM
Local |
huawei | harmonyos | Permission control vulnerability in the ability module Impact: Successful exploitation of this vulnerability may cause features to function abnormally. New |
NVD-CWE-noinfo
|
CVE-2024-51516 | 2024-11-8 04:42 | 2024-11-5 | Show | GitHub Exploit DB Packet Storm |
104 | 4.7 |
MEDIUM
Local |
huawei | harmonyos | Race condition vulnerability in the kernel network module Impact:Successful exploitation of this vulnerability may affect availability. New |
CWE-362
Race Condition |
CVE-2024-51515 | 2024-11-8 04:42 | 2024-11-5 | Show | GitHub Exploit DB Packet Storm |
105 | 7.8 |
HIGH
Local |
qualcomm |
wsa8845h_firmware wsa8845_firmware wsa8840_firmware wsa8835_firmware wsa8832_firmware wsa8830_firmware wsa8815_firmware wsa8810_firmware wcn7881_firmware wcn7880_firmware | Memory corruption while handling session errors from firmware. Update |
CWE-416
Use After Free |
CVE-2024-38415 | 2024-11-8 04:41 | 2024-11-4 | Show | GitHub Exploit DB Packet Storm |
106 | 7.8 |
HIGH
Local |
qualcomm |
wsa8845h_firmware wsa8845_firmware wsa8840_firmware wsa8835_firmware wsa8830_firmware wcn3660b_firmware wcn3620_firmware wcd9385_firmware wcd9380_firmware wcd9375_firmware<… |
Memory corruption while IOCLT is called when device is in invalid state and the WMI command buffer may be freed twice. Update |
CWE-787
Out-of-bounds Write |
CVE-2024-38410 | 2024-11-8 04:41 | 2024-11-4 | Show | GitHub Exploit DB Packet Storm |
107 | 7.8 |
HIGH
Local |
qualcomm |
wsa8845h_firmware wsa8845_firmware wsa8840_firmware wsa8835_firmware wsa8830_firmware wcn3660b_firmware wcn3620_firmware wcd9385_firmware wcd9380_firmware wcd9375_firmware<… |
Memory corruption while station LL statistic handling. Update |
CWE-120
Classic Buffer Overflow |
CVE-2024-38409 | 2024-11-8 04:40 | 2024-11-4 | Show | GitHub Exploit DB Packet Storm |
108 | 7.0 |
HIGH
Local |
qualcomm |
aqt1000_firmware fastconnect_6200_firmware fastconnect_6700_firmware fastconnect_6800_firmware fastconnect_6900_firmware fastconnect_7800_firmware qca6391_firmware qca6420_firmwa… |
Memory corruption while processing input parameters for any IOCTL call in the JPEG Encoder driver. Update |
CWE-367
Time-of-check Time-of-use (TOCTOU) Race Condition |
CVE-2024-38407 | 2024-11-8 04:39 | 2024-11-4 | Show | GitHub Exploit DB Packet Storm |
109 | 7.8 |
HIGH
Local |
qualcomm |
wsa8845h_firmware wsa8845_firmware wsa8840_firmware wsa8835_firmware wsa8832_firmware wsa8830_firmware wcn7880_firmware wcn6755_firmware wcn6650_firmware wcd9395_firmware | Memory corruption while processing IOCTL calls to unmap the buffers. Update |
CWE-416
Use After Free |
CVE-2024-33033 | 2024-11-8 04:39 | 2024-11-4 | Show | GitHub Exploit DB Packet Storm |
110 | 5.5 |
MEDIUM
Local |
linux | linux_kernel | In the Linux kernel, the following vulnerability has been resolved: mm/damon/sysfs: fix wrong empty schemes assumption under online tuning in damon_sysfs_set_schemes() Commit da87878010e5 ("mm/damo… Update |
NVD-CWE-noinfo
|
CVE-2022-48996 | 2024-11-8 04:37 | 2024-10-22 | Show | GitHub Exploit DB Packet Storm |