You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Nov. 5, 2024, 4:02 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
198621 | 5 | 警告 | osCSS | - | osCSS の catalog/content.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2011-4713 | 2011-12-13 15:01 | 2011-11-8 | Show | GitHub Exploit DB Packet Storm |
198622 | 5 | 警告 | monoxide0184 | - | Oxide WebServer におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2011-4712 | 2011-12-13 14:59 | 2011-12-8 | Show | GitHub Exploit DB Packet Storm |
198623 | 5 | 警告 | Namazu Project | - | Namazu の namazu.cgi におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2011-4711 | 2011-12-13 14:57 | 2011-12-8 | Show | GitHub Exploit DB Packet Storm |
198624 | 7.5 | 危険 | Lucid Crew | - | Pixie CMS における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-4710 | 2011-12-13 14:53 | 2011-12-8 | Show | GitHub Exploit DB Packet Storm |
198625 | 4.3 | 警告 | Hotaru CMS | - | Hotaru CMS の Search プラグイン内にある Hotaru.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-4709 | 2011-12-13 14:52 | 2011-12-8 | Show | GitHub Exploit DB Packet Storm |
198626 | 4.3 | 警告 | IBM | - | IBM Rational Asset Manager におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-4708 | 2011-12-13 14:51 | 2011-05-5 | Show | GitHub Exploit DB Packet Storm |
198627 | 4.3 | 警告 | SAP | - | SAP Netweaver の Virus Scan Interface におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-4707 | 2011-12-13 14:50 | 2011-12-8 | Show | GitHub Exploit DB Packet Storm |
198628 | 5 | 警告 | Igor Sysoev | - | nginx におけるヒープベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2011-4315 | 2011-12-13 14:49 | 2011-11-15 | Show | GitHub Exploit DB Packet Storm |
198629 | 7.5 | 危険 | Mambo Foundation | - | Mambo CMS の administrator/index2.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-2917 | 2011-12-13 14:41 | 2011-12-8 | Show | GitHub Exploit DB Packet Storm |
198630 | 6.8 | 警告 | MIT Kerberos | - | MIT Kerberos の process_tgs_req 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2011-1530 | 2011-12-13 14:40 | 2011-12-6 | Show | GitHub Exploit DB Packet Storm |
Update Date:Nov. 5, 2024, 4:16 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
661 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted CATPART file when parsed in ASMKERN230A.dll through Autodesk AutoCAD can force a Out-of-Bounds Write vulnerability. A malicious actor can leverage this vulnerability to cause a… |
CWE-787
Out-of-bounds Write |
CVE-2024-8593 | 2024-11-2 01:18 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
662 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted 3DM file when parsed in AcTranslators.exe through Autodesk AutoCAD can force a Heap-Based Buffer Overflow vulnerability. A malicious actor can leverage this vulnerability to ca… |
CWE-787
Out-of-bounds Write |
CVE-2024-8591 | 2024-11-2 01:18 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
663 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted 3DM file when parsed in atf_api.dll through Autodesk AutoCAD can force a Use-After-Free vulnerability. A malicious actor can leverage this vulnerability to cause a crash, write… |
CWE-416
Use After Free |
CVE-2024-8590 | 2024-11-2 01:18 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
664 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted SLDPRT file when parsed in odxsw_dll.dll through Autodesk AutoCAD can force a Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a cra… |
CWE-125
Out-of-bounds Read |
CVE-2024-8589 | 2024-11-2 01:18 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
665 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted CATPART file when parsed in CC5Dll.dll through Autodesk AutoCAD can force an Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a cras… |
CWE-125
Out-of-bounds Read |
CVE-2024-9827 | 2024-11-2 01:17 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
666 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted 3DM file when parsed in atf_api.dll through Autodesk AutoCAD can force a Use-After-Free vulnerability. A malicious actor can leverage this vulnerability to cause a crash, write … |
CWE-416
Use After Free |
CVE-2024-9826 | 2024-11-2 01:17 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
667 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted SLDPRT file when parsed in odxsw_dll.dll through Autodesk AutoCAD can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to cause a cras… |
CWE-787
Out-of-bounds Write |
CVE-2024-8600 | 2024-11-2 01:17 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
668 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted STP file when parsed in ACTranslators.exe through Autodesk AutoCAD can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to cause a cras… |
CWE-787
Out-of-bounds Write |
CVE-2024-8599 | 2024-11-2 01:17 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
669 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted STP file when parsed in ACTranslators.exe through Autodesk AutoCAD can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to cause a cras… |
CWE-787
Out-of-bounds Write |
CVE-2024-8598 | 2024-11-2 01:17 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
670 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted STP file when parsed in ASMDATAX230A.dll through Autodesk AutoCAD can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to cause a crash… |
CWE-787
Out-of-bounds Write |
CVE-2024-8597 | 2024-11-2 01:17 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |