You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Nov. 18, 2024, 6:03 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
192641 | 4.3 | 警告 | agaresmedia | - | phpAutoVideo の index.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-0432 | 2012-06-26 15:55 | 2008-01-23 | Show | GitHub Exploit DB Packet Storm |
192642 | 7.5 | 危険 | 360 web manager | - | 360 Web Manager の form.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-0430 | 2012-06-26 15:55 | 2008-01-23 | Show | GitHub Exploit DB Packet Storm |
192643 | 7.5 | 危険 | AlstraSoft | - | AlstraSoft Forum Pay Per Post Exchange の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-0429 | 2012-06-26 15:55 | 2008-01-23 | Show | GitHub Exploit DB Packet Storm |
192644 | 7.5 | 危険 | bloofox | - | bloofoxCMS の system/class_permissions.php の login 関数における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-0428 | 2012-06-26 15:55 | 2008-01-23 | Show | GitHub Exploit DB Packet Storm |
192645 | 7.8 | 危険 | bloofox | - | bloofoxCMS の file.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2008-0427 | 2012-06-26 15:55 | 2008-01-23 | Show | GitHub Exploit DB Packet Storm |
192646 | 5 | 警告 | frimousse | - | Frimousse の explorerdir.php における絶対パストラバーサルの脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-0425 | 2012-06-26 15:55 | 2008-01-23 | Show | GitHub Exploit DB Packet Storm |
192647 | 7.5 | 危険 | boastmachine | - | boastMachine の mail.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-0422 | 2012-06-26 15:55 | 2008-01-23 | Show | GitHub Exploit DB Packet Storm |
192648 | 5.5 | 警告 | Belkin International | - | Belkin Wireless G Plus MIMO Router F5D9230-4 の Web サーバにおける設定を変更される脆弱性 |
CWE-287
不適切な認証 |
CVE-2008-0403 | 2012-06-26 15:55 | 2008-01-23 | Show | GitHub Exploit DB Packet Storm |
192649 | 4.3 | 警告 | aflog | - | aflog におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-0398 | 2012-06-26 15:55 | 2008-01-23 | Show | GitHub Exploit DB Packet Storm |
192650 | 6.8 | 警告 | aflog | - | aflog における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-0397 | 2012-06-26 15:55 | 2008-01-23 | Show | GitHub Exploit DB Packet Storm |
Update Date:Nov. 18, 2024, 4:13 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
2461 | 5.5 |
MEDIUM
Local |
huawei | harmonyos | Vulnerability of improper device information processing in the device management module Impact: Successful exploitation of this vulnerability may affect availability. |
NVD-CWE-noinfo
|
CVE-2024-51522 | 2024-11-8 05:03 | 2024-11-5 | Show | GitHub Exploit DB Packet Storm |
2462 | 5.5 |
MEDIUM
Local |
huawei | harmonyos | Permission control vulnerability in the Wi-Fi module Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
NVD-CWE-noinfo
|
CVE-2024-51524 | 2024-11-8 05:02 | 2024-11-5 | Show | GitHub Exploit DB Packet Storm |
2463 | 6.7 |
MEDIUM
Local |
qualcomm |
wcn3660b_firmware wcn3620_firmware wcd9340_firmware snapdragon_x75_5g_modem-rf_system_firmware snapdragon_x72_5g_modem-rf_system_firmware snapdragon_429_mobile_platform_firmware sdm… |
Memory corruption while processing the update SIM PB records request. |
NVD-CWE-noinfo
|
CVE-2024-33031 | 2024-11-8 05:02 | 2024-11-4 | Show | GitHub Exploit DB Packet Storm |
2464 | 5.5 |
MEDIUM
Local |
huawei | harmonyos | Permission control vulnerability in the clipboard module Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
NVD-CWE-noinfo
|
CVE-2024-51525 | 2024-11-8 05:01 | 2024-11-5 | Show | GitHub Exploit DB Packet Storm |
2465 | 7.0 |
HIGH
Local |
qualcomm |
wsa8845h_firmware wsa8845_firmware wsa8840_firmware wsa8835_firmware wsa8830_firmware wsa8815_firmware wsa8810_firmware wcn3660b_firmware wcn3620_firmware wcd9385_firmware<… |
Memory corruption while handling IOCTL calls in JPEG Encoder driver. |
CWE-367
Time-of-check Time-of-use (TOCTOU) Race Condition |
CVE-2024-38406 | 2024-11-8 05:01 | 2024-11-4 | Show | GitHub Exploit DB Packet Storm |
2466 | 5.5 |
MEDIUM
Local |
huawei | harmonyos | Permission control vulnerability in the hidebug module Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
NVD-CWE-noinfo
|
CVE-2024-51526 | 2024-11-8 05:00 | 2024-11-5 | Show | GitHub Exploit DB Packet Storm |
2467 | 6.7 |
MEDIUM
Local |
qualcomm |
wsa8835_firmware wsa8832_firmware wsa8830_firmware wsa8815_firmware wsa8810_firmware wcn3988_firmware wcn3980_firmware wcn3950_firmware wcn3680b_firmware wcn3660b_firmware<… |
Memory corruption when the user application modifies the same shared memory asynchronously when kernel is accessing it. |
CWE-129
Improper Validation of Array Index |
CVE-2024-33032 | 2024-11-8 04:59 | 2024-11-4 | Show | GitHub Exploit DB Packet Storm |
2468 | 6.7 |
MEDIUM
Local |
qualcomm |
wsa8845h_firmware wsa8845_firmware wsa8840_firmware wsa8835_firmware wsa8832_firmware wsa8830_firmware wcn7880_firmware wcn6755_firmware wcn6650_firmware wcd9395_firmware | Memory corruption while invoking IOCTL command from user-space, when a user modifies the original packet size of the command after system properties have been already sent to the EVA driver. |
NVD-CWE-Other
|
CVE-2024-23377 | 2024-11-8 04:59 | 2024-11-4 | Show | GitHub Exploit DB Packet Storm |
2469 | 5.5 |
MEDIUM
Local |
huawei |
harmonyos emui |
Vulnerability of improper log printing in the Super Home Screen module Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
CWE-532
Inclusion of Sensitive Information in Log Files |
CVE-2024-51528 | 2024-11-8 04:57 | 2024-11-5 | Show | GitHub Exploit DB Packet Storm |
2470 | 5.5 |
MEDIUM
Local |
huawei |
emui harmonyos |
Permission control vulnerability in the Gallery app Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
NVD-CWE-noinfo
|
CVE-2024-51527 | 2024-11-8 04:57 | 2024-11-5 | Show | GitHub Exploit DB Packet Storm |