You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Nov. 16, 2024, 6 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
199041 | 7.5 | 危険 | - | Google Chrome で使用される Skia におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-DesignError
|
CVE-2011-3927 | 2012-01-25 16:09 | 2012-01-23 | Show | GitHub Exploit DB Packet Storm | |
199042 | 7.5 | 危険 | - | Google Chrome の Safe Browsing 機能におけるサービス運用妨害 (ヒープメモリ破損) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2011-3925 | 2012-01-25 16:07 | 2012-01-23 | Show | GitHub Exploit DB Packet Storm | |
199043 | 4.3 | 警告 | SimpleSAMLphp | - | SimpleSAMLphp の modules/core/www/no_cookie.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-0040 | 2012-01-25 14:16 | 2012-01-24 | Show | GitHub Exploit DB Packet Storm |
199044 | 7.5 | 危険 | Stoneware | - | Stoneware webNetwork における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2012-0912 | 2012-01-25 14:15 | 2012-01-23 | Show | GitHub Exploit DB Packet Storm |
199045 | 6.8 | 警告 | Stoneware | - | Stoneware webNetwork におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2012-0286 | 2012-01-25 14:14 | 2012-01-23 | Show | GitHub Exploit DB Packet Storm |
199046 | 4.3 | 警告 | Stoneware | - | Stoneware webNetwork におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-0285 | 2012-01-25 14:13 | 2012-01-23 | Show | GitHub Exploit DB Packet Storm |
199047 | 5.8 | 警告 | NeoAxis | - | NeoAxis web player におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2012-0907 | 2012-01-25 11:24 | 2012-01-20 | Show | GitHub Exploit DB Packet Storm |
199048 | 7.5 | 危険 | deV!L'z Clanportal | - | deV!L'z Clanportal (DZCP) の Moviebase アドオンにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2012-0906 | 2012-01-25 11:00 | 2012-01-20 | Show | GitHub Exploit DB Packet Storm |
199049 | 7.5 | 危険 | deV!L'z Clanportal | - | deV!L'z Clanportal (DZCP) の Gamebase アドオンにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2012-0905 | 2012-01-25 10:57 | 2012-01-20 | Show | GitHub Exploit DB Packet Storm |
199050 | 4.3 | 警告 | VideoLAN | - | VLC media player におけるサービス運用妨害 (クラッシュ) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2012-0904 | 2012-01-25 10:54 | 2012-01-20 | Show | GitHub Exploit DB Packet Storm |
Update Date:Nov. 16, 2024, 4:17 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
2391 | 6.5 |
MEDIUM
Network |
qualcomm |
wsa8845h_firmware wsa8845_firmware wsa8840_firmware wsa8835_firmware wsa8832_firmware wsa8830_firmware wcn7881_firmware wcn7880_firmware wcn7861_firmware wcn7860_firmware | Transient DOS while processing the CU information from RNR IE. |
CWE-125
Out-of-bounds Read |
CVE-2024-38405 | 2024-11-8 05:06 | 2024-11-4 | Show | GitHub Exploit DB Packet Storm |
2392 | 6.5 |
MEDIUM
Network |
qualcomm |
wsa8845h_firmware wsa8845_firmware wsa8840_firmware wsa8835_firmware wsa8832_firmware wsa8830_firmware wcn7881_firmware wcn7880_firmware wcn7861_firmware wcn7860_firmware | Transient DOS while parsing BTM ML IE when per STA profile is not included. |
CWE-125
Out-of-bounds Read |
CVE-2024-38403 | 2024-11-8 05:06 | 2024-11-4 | Show | GitHub Exploit DB Packet Storm |
2393 | 6.5 |
MEDIUM
Network |
qualcomm |
wsa8845h_firmware wsa8845_firmware wsa8840_firmware wsa8835_firmware wsa8832_firmware wsa8830_firmware wsa8815_firmware wsa8810_firmware wcn6755_firmware wcn3988_firmware | Transient DOS as modem reset occurs when an unexpected MAC RAR (with invalid PDU length) is seen at UE. |
CWE-617
Reachable Assertion |
CVE-2024-23385 | 2024-11-8 05:05 | 2024-11-4 | Show | GitHub Exploit DB Packet Storm |
2394 | 6.7 |
MEDIUM
Local |
qualcomm |
wsa8835_firmware wsa8830_firmware wcd9380_firmware wcd9340_firmware snapdragon_x75_5g_modem-rf_system_firmware snapdragon_x72_5g_modem-rf_system_firmware snapdragon_auto_5g_modem-rf… |
Memory corruption while parsing IPC frequency table parameters for LPLH that has size greater than expected size. |
CWE-120
Classic Buffer Overflow |
CVE-2024-33030 | 2024-11-8 05:04 | 2024-11-4 | Show | GitHub Exploit DB Packet Storm |
2395 | 7.5 |
HIGH
Network
huawei
|
harmonyos
|
Information management vulnerability in the Gallery module
Impact: Successful exploitation of this vulnerability may affect service confidentiality.
|
NVD-CWE-noinfo
|
CVE-2024-51523
|
2024-11-8 05:03 |
2024-11-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2396 | 5.5 |
MEDIUM
Local |
huawei | harmonyos | Vulnerability of improper device information processing in the device management module Impact: Successful exploitation of this vulnerability may affect availability. |
NVD-CWE-noinfo
|
CVE-2024-51522 | 2024-11-8 05:03 | 2024-11-5 | Show | GitHub Exploit DB Packet Storm |
2397 | 5.5 |
MEDIUM
Local |
huawei | harmonyos | Permission control vulnerability in the Wi-Fi module Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
NVD-CWE-noinfo
|
CVE-2024-51524 | 2024-11-8 05:02 | 2024-11-5 | Show | GitHub Exploit DB Packet Storm |
2398 | 6.7 |
MEDIUM
Local |
qualcomm |
wcn3660b_firmware wcn3620_firmware wcd9340_firmware snapdragon_x75_5g_modem-rf_system_firmware snapdragon_x72_5g_modem-rf_system_firmware snapdragon_429_mobile_platform_firmware sdm… |
Memory corruption while processing the update SIM PB records request. |
NVD-CWE-noinfo
|
CVE-2024-33031 | 2024-11-8 05:02 | 2024-11-4 | Show | GitHub Exploit DB Packet Storm |
2399 | 5.5 |
MEDIUM
Local |
huawei | harmonyos | Permission control vulnerability in the clipboard module Impact: Successful exploitation of this vulnerability may affect service confidentiality. |
NVD-CWE-noinfo
|
CVE-2024-51525 | 2024-11-8 05:01 | 2024-11-5 | Show | GitHub Exploit DB Packet Storm |
2400 | 7.0 |
HIGH
Local |
qualcomm |
wsa8845h_firmware wsa8845_firmware wsa8840_firmware wsa8835_firmware wsa8830_firmware wsa8815_firmware wsa8810_firmware wcn3660b_firmware wcn3620_firmware wcd9385_firmware<… |
Memory corruption while handling IOCTL calls in JPEG Encoder driver. |
CWE-367
Time-of-check Time-of-use (TOCTOU) Race Condition |
CVE-2024-38406 | 2024-11-8 05:01 | 2024-11-4 | Show | GitHub Exploit DB Packet Storm |