You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Nov. 5, 2024, 6:02 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
198661 | 4.3 | 警告 | Hotaru CMS | - | Hotaru CMS の Search プラグイン内にある Hotaru.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-4709 | 2011-12-13 14:52 | 2011-12-8 | Show | GitHub Exploit DB Packet Storm |
198662 | 4.3 | 警告 | IBM | - | IBM Rational Asset Manager におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-4708 | 2011-12-13 14:51 | 2011-05-5 | Show | GitHub Exploit DB Packet Storm |
198663 | 4.3 | 警告 | SAP | - | SAP Netweaver の Virus Scan Interface におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-4707 | 2011-12-13 14:50 | 2011-12-8 | Show | GitHub Exploit DB Packet Storm |
198664 | 5 | 警告 | Igor Sysoev | - | nginx におけるヒープベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2011-4315 | 2011-12-13 14:49 | 2011-11-15 | Show | GitHub Exploit DB Packet Storm |
198665 | 7.5 | 危険 | Mambo Foundation | - | Mambo CMS の administrator/index2.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-2917 | 2011-12-13 14:41 | 2011-12-8 | Show | GitHub Exploit DB Packet Storm |
198666 | 6.8 | 警告 | MIT Kerberos | - | MIT Kerberos の process_tgs_req 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2011-1530 | 2011-12-13 14:40 | 2011-12-6 | Show | GitHub Exploit DB Packet Storm |
198667 | 6.4 | 警告 | BlackBerry | - | BlackBerry Administration API におけるテキストファイルを読まれる脆弱性 |
CWE-noinfo
情報不足 |
CVE-2011-0287 | 2011-12-13 14:35 | 2011-07-12 | Show | GitHub Exploit DB Packet Storm |
198668 | 6.4 | 警告 | Widelands | - | Widelands におけるパストラバーサル攻撃を誘発される脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2011-4675 | 2011-12-12 18:21 | 2011-12-5 | Show | GitHub Exploit DB Packet Storm |
198669 | 5 | 警告 | One Click Orgs | - | One Click Orgs のパスワードリセット機能におけるユーザアカウントを列挙される脆弱性 |
CWE-255
証明書・パスワード管理 |
CVE-2011-4678 | 2011-12-12 18:19 | 2011-12-6 | Show | GitHub Exploit DB Packet Storm |
198670 | 4 | 警告 | One Click Orgs | - | One Click Orgs におけるサービス運用妨害 (ログイン障害) の脆弱性 |
CWE-255
証明書・パスワード管理 |
CVE-2011-4555 | 2011-12-12 18:18 | 2011-12-6 | Show | GitHub Exploit DB Packet Storm |
Update Date:Nov. 5, 2024, 4:16 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
651 | 7.8 |
HIGH
Local |
ysoft | safeq | An issue was discovered in YSoft SAFEQ 6 before 6.0.72. Incorrect privileges were configured as part of the installer package for the Client V3 services, allowing for local user privilege escalation … |
NVD-CWE-noinfo
|
CVE-2022-38176 | 2024-11-2 01:31 | 2022-09-7 | Show | GitHub Exploit DB Packet Storm |
652 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d dwg_trueview autocad_lt |
A maliciously crafted DWG file when parsed in acdb25.dll through Autodesk AutoCAD can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to cause a crash, wri… |
CWE-787
Out-of-bounds Write |
CVE-2024-9997 | 2024-11-2 01:27 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
653 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d dwg_trueview autocad_lt |
A maliciously crafted DWG file when parsed in acdb25.dll through Autodesk AutoCAD can force an Out-of-Bounds Write vulnerability. A malicious actor can leverage this vulnerability to cause a crash, … |
CWE-787
Out-of-bounds Write |
CVE-2024-9996 | 2024-11-2 01:27 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
654 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d dwg_trueview autocad_lt |
A maliciously crafted DWG file when parsed in ACAD.exe through Autodesk AutoCAD can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to cause a crash, write … |
CWE-787
Out-of-bounds Write |
CVE-2024-9489 | 2024-11-2 01:27 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
655 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d dwg_trueview autocad_lt |
A maliciously crafted DXF file when parsed in acdb25.dll through Autodesk AutoCAD can force to access a variable prior to initialization. A malicious actor can leverage this vulnerability to cause a … |
CWE-908
Use of Uninitialized Resource |
CVE-2024-8896 | 2024-11-2 01:27 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
656 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d dwg_trueview autocad_lt |
A maliciously crafted DWG file, when parsed through Autodesk AutoCAD and certain AutoCAD-based products, can force a Stack-based Buffer Overflow. A malicious actor can leverage this vulnerability to … |
CWE-787
Out-of-bounds Write |
CVE-2024-7992 | 2024-11-2 01:26 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
657 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d dwg_trueview autocad_lt |
A maliciously crafted DWG file, when parsed through Autodesk AutoCAD and certain AutoCAD-based products, can force an Out-of-Bounds Write. A malicious actor can leverage this vulnerability to cause a… |
CWE-787
Out-of-bounds Write |
CVE-2024-7991 | 2024-11-2 01:26 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
658 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted CATPART file when parsed in AcTranslators.exe through Autodesk AutoCAD can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to cause a… |
CWE-787
Out-of-bounds Write |
CVE-2024-8592 | 2024-11-2 01:22 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
659 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted MODEL file when parsed in libodxdll.dll through Autodesk AutoCAD can force a Use-After-Free vulnerability. A malicious actor can leverage this vulnerability to cause a crash, wr… |
CWE-416
Use After Free |
CVE-2024-8595 | 2024-11-2 01:18 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
660 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted MODEL file when parsed in libodxdll.dll through Autodesk AutoCAD can force a Heap-Based Overflow vulnerability. A malicious actor can leverage this vulnerability to cause a cras… |
CWE-787
Out-of-bounds Write |
CVE-2024-8594 | 2024-11-2 01:18 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |