You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Nov. 5, 2024, 4:02 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
198411 | 4.3 | 警告 | xt:Commerce | - | xt:Commerce におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-5011 | 2011-12-28 11:41 | 2011-12-25 | Show | GitHub Exploit DB Packet Storm |
198412 | 10 | 危険 | Ctek, Inc. | - | Ctek SkyRouter の apps/a3/cfg_ethping.cgi における任意のコマンドを実行される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-5010 | 2011-12-28 11:40 | 2011-12-25 | Show | GitHub Exploit DB Packet Storm |
198413 | 5 | 警告 | 3S-Smart Software Solutions | - | 3S CoDeSys におけるサービス運用妨害 (NULL ポインタデリファレンス) の脆弱性 |
CWE-Other
その他 |
CVE-2011-5009 | 2011-12-28 11:36 | 2011-12-25 | Show | GitHub Exploit DB Packet Storm |
198414 | 7.5 | 危険 | 3S-Smart Software Solutions | - | 3S CoDeSys の GatewayService コンポーネントにおける整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2011-5008 | 2011-12-28 11:35 | 2011-12-25 | Show | GitHub Exploit DB Packet Storm |
198415 | 10 | 危険 | 3S-Smart Software Solutions | - | 3S CoDeSys におけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2011-5007 | 2011-12-28 11:34 | 2011-12-25 | Show | GitHub Exploit DB Packet Storm |
198416 | 7.5 | 危険 | Wuzly | - | Wuzly の管理機能における認証を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-3839 | 2011-12-28 11:31 | 2011-12-24 | Show | GitHub Exploit DB Packet Storm |
198417 | 7.5 | 危険 | Wuzly | - | Wuzly における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-3838 | 2011-12-28 11:31 | 2011-12-24 | Show | GitHub Exploit DB Packet Storm |
198418 | 6.8 | 警告 | Wuzly | - | Wuzly の blog_system/data_functions.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2011-3837 | 2011-12-28 11:30 | 2011-12-24 | Show | GitHub Exploit DB Packet Storm |
198419 | 4.3 | 警告 | Wuzly | - | Wuzly におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2011-3836 | 2011-12-28 11:30 | 2011-12-24 | Show | GitHub Exploit DB Packet Storm |
198420 | 4.3 | 警告 | Wuzly | - | Wuzly におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-3835 | 2011-12-28 11:29 | 2011-12-24 | Show | GitHub Exploit DB Packet Storm |
Update Date:Nov. 5, 2024, 4:16 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
651 | 7.8 |
HIGH
Local |
ysoft | safeq | An issue was discovered in YSoft SAFEQ 6 before 6.0.72. Incorrect privileges were configured as part of the installer package for the Client V3 services, allowing for local user privilege escalation … |
NVD-CWE-noinfo
|
CVE-2022-38176 | 2024-11-2 01:31 | 2022-09-7 | Show | GitHub Exploit DB Packet Storm |
652 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d dwg_trueview autocad_lt |
A maliciously crafted DWG file when parsed in acdb25.dll through Autodesk AutoCAD can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to cause a crash, wri… |
CWE-787
Out-of-bounds Write |
CVE-2024-9997 | 2024-11-2 01:27 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
653 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d dwg_trueview autocad_lt |
A maliciously crafted DWG file when parsed in acdb25.dll through Autodesk AutoCAD can force an Out-of-Bounds Write vulnerability. A malicious actor can leverage this vulnerability to cause a crash, … |
CWE-787
Out-of-bounds Write |
CVE-2024-9996 | 2024-11-2 01:27 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
654 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d dwg_trueview autocad_lt |
A maliciously crafted DWG file when parsed in ACAD.exe through Autodesk AutoCAD can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to cause a crash, write … |
CWE-787
Out-of-bounds Write |
CVE-2024-9489 | 2024-11-2 01:27 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
655 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d dwg_trueview autocad_lt |
A maliciously crafted DXF file when parsed in acdb25.dll through Autodesk AutoCAD can force to access a variable prior to initialization. A malicious actor can leverage this vulnerability to cause a … |
CWE-908
Use of Uninitialized Resource |
CVE-2024-8896 | 2024-11-2 01:27 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
656 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d dwg_trueview autocad_lt |
A maliciously crafted DWG file, when parsed through Autodesk AutoCAD and certain AutoCAD-based products, can force a Stack-based Buffer Overflow. A malicious actor can leverage this vulnerability to … |
CWE-787
Out-of-bounds Write |
CVE-2024-7992 | 2024-11-2 01:26 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
657 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d dwg_trueview autocad_lt |
A maliciously crafted DWG file, when parsed through Autodesk AutoCAD and certain AutoCAD-based products, can force an Out-of-Bounds Write. A malicious actor can leverage this vulnerability to cause a… |
CWE-787
Out-of-bounds Write |
CVE-2024-7991 | 2024-11-2 01:26 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
658 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted CATPART file when parsed in AcTranslators.exe through Autodesk AutoCAD can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to cause a… |
CWE-787
Out-of-bounds Write |
CVE-2024-8592 | 2024-11-2 01:22 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
659 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted MODEL file when parsed in libodxdll.dll through Autodesk AutoCAD can force a Use-After-Free vulnerability. A malicious actor can leverage this vulnerability to cause a crash, wr… |
CWE-416
Use After Free |
CVE-2024-8595 | 2024-11-2 01:18 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
660 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted MODEL file when parsed in libodxdll.dll through Autodesk AutoCAD can force a Heap-Based Overflow vulnerability. A malicious actor can leverage this vulnerability to cause a cras… |
CWE-787
Out-of-bounds Write |
CVE-2024-8594 | 2024-11-2 01:18 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |