You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Nov. 5, 2024, 6:02 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
198391 | 7.2 | 危険 | SopCast | - | SopCast における任意のコードを実行される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-5044 | 2012-01-5 16:13 | 2011-12-30 | Show | GitHub Exploit DB Packet Storm |
198392 | 4.3 | 警告 | Tomatosoft | - | TomatoSoft Free Mp3 Player におけるサービス運用妨害 (アプリケーションクラッシュ) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2011-5043 | 2012-01-5 16:12 | 2011-12-30 | Show | GitHub Exploit DB Packet Storm |
198393 | 4.3 | 警告 | gphemsley | - | SASHA の inc/lib/lib.base.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-5042 | 2012-01-5 16:11 | 2011-12-30 | Show | GitHub Exploit DB Packet Storm |
198394 | 4.3 | 警告 | PulseCMS | - | Pulse Pro CMS におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-5041 | 2012-01-5 16:10 | 2011-12-30 | Show | GitHub Exploit DB Packet Storm |
198395 | 4.3 | 警告 | Infoproject | - | Infoproject Biznis Heroj におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-5040 | 2012-01-5 14:27 | 2011-12-30 | Show | GitHub Exploit DB Packet Storm |
198396 | 7.5 | 危険 | Infoproject | - | Infoproject Biznis Heroj における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-5039 | 2012-01-5 14:26 | 2011-12-30 | Show | GitHub Exploit DB Packet Storm |
198397 | 7.5 | 危険 | hitCode | - | hitCode hitAppoint における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-5038 | 2012-01-5 14:24 | 2011-12-30 | Show | GitHub Exploit DB Packet Storm |
198398 | 4.4 | 警告 | ConfigServer | - | ConfigServer Security & Firewall におけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2011-5033 | 2012-01-5 14:21 | 2011-12-10 | Show | GitHub Exploit DB Packet Storm |
198399 | 4.9 | 警告 | WinMount | - | WinMount の WMDrive.sys におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-Other
その他 |
CVE-2011-5032 | 2012-01-5 14:20 | 2011-12-29 | Show | GitHub Exploit DB Packet Storm |
198400 | 7.5 | 危険 | Shilpi Computers Limited. | - | cApexWEB の servlet/capexweb.parentvalidatepassword における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-5031 | 2012-01-5 14:19 | 2011-12-29 | Show | GitHub Exploit DB Packet Storm |
Update Date:Nov. 5, 2024, 4:16 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
651 | 7.8 |
HIGH
Local |
ysoft | safeq | An issue was discovered in YSoft SAFEQ 6 before 6.0.72. Incorrect privileges were configured as part of the installer package for the Client V3 services, allowing for local user privilege escalation … |
NVD-CWE-noinfo
|
CVE-2022-38176 | 2024-11-2 01:31 | 2022-09-7 | Show | GitHub Exploit DB Packet Storm |
652 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d dwg_trueview autocad_lt |
A maliciously crafted DWG file when parsed in acdb25.dll through Autodesk AutoCAD can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to cause a crash, wri… |
CWE-787
Out-of-bounds Write |
CVE-2024-9997 | 2024-11-2 01:27 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
653 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d dwg_trueview autocad_lt |
A maliciously crafted DWG file when parsed in acdb25.dll through Autodesk AutoCAD can force an Out-of-Bounds Write vulnerability. A malicious actor can leverage this vulnerability to cause a crash, … |
CWE-787
Out-of-bounds Write |
CVE-2024-9996 | 2024-11-2 01:27 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
654 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d dwg_trueview autocad_lt |
A maliciously crafted DWG file when parsed in ACAD.exe through Autodesk AutoCAD can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to cause a crash, write … |
CWE-787
Out-of-bounds Write |
CVE-2024-9489 | 2024-11-2 01:27 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
655 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d dwg_trueview autocad_lt |
A maliciously crafted DXF file when parsed in acdb25.dll through Autodesk AutoCAD can force to access a variable prior to initialization. A malicious actor can leverage this vulnerability to cause a … |
CWE-908
Use of Uninitialized Resource |
CVE-2024-8896 | 2024-11-2 01:27 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
656 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d dwg_trueview autocad_lt |
A maliciously crafted DWG file, when parsed through Autodesk AutoCAD and certain AutoCAD-based products, can force a Stack-based Buffer Overflow. A malicious actor can leverage this vulnerability to … |
CWE-787
Out-of-bounds Write |
CVE-2024-7992 | 2024-11-2 01:26 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
657 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d dwg_trueview autocad_lt |
A maliciously crafted DWG file, when parsed through Autodesk AutoCAD and certain AutoCAD-based products, can force an Out-of-Bounds Write. A malicious actor can leverage this vulnerability to cause a… |
CWE-787
Out-of-bounds Write |
CVE-2024-7991 | 2024-11-2 01:26 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
658 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted CATPART file when parsed in AcTranslators.exe through Autodesk AutoCAD can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to cause a… |
CWE-787
Out-of-bounds Write |
CVE-2024-8592 | 2024-11-2 01:22 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
659 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted MODEL file when parsed in libodxdll.dll through Autodesk AutoCAD can force a Use-After-Free vulnerability. A malicious actor can leverage this vulnerability to cause a crash, wr… |
CWE-416
Use After Free |
CVE-2024-8595 | 2024-11-2 01:18 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
660 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted MODEL file when parsed in libodxdll.dll through Autodesk AutoCAD can force a Heap-Based Overflow vulnerability. A malicious actor can leverage this vulnerability to cause a cras… |
CWE-787
Out-of-bounds Write |
CVE-2024-8594 | 2024-11-2 01:18 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |