You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Oct. 5, 2024, 6 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
200131 | 5 | 警告 | サイバートラスト株式会社 Wireshark レッドハット |
- | Wireshark の AFS 解析部におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-2562 | 2010-05-20 18:29 | 2009-07-20 | Show | GitHub Exploit DB Packet Storm |
200132 | 5 | 警告 | サイバートラスト株式会社 Wireshark レッドハット |
- | Wireshark の解析部におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-2560 | 2010-05-20 18:29 | 2009-07-20 | Show | GitHub Exploit DB Packet Storm |
200133 | 10 | 危険 | サン・マイクロシステムズ サイバートラスト株式会社 RealVNC レッドハット |
- | RealVNC VNC Viewer コンポーネントにおける任意のコードを実行される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2008-4770 | 2010-05-20 18:03 | 2009-01-16 | Show | GitHub Exploit DB Packet Storm |
200134 | 4.9 | 警告 | ヒューレット・パッカード | - | HP HP-UX におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-1032 | 2010-05-19 17:57 | 2010-04-16 | Show | GitHub Exploit DB Packet Storm |
200135 | 9.3 | 危険 | アドビシステムズ | - | 複数の Adobe 製品などで利用される Adobe Download Manager におけるバッファーオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2010-1278 | 2010-05-19 17:57 | 2010-04-15 | Show | GitHub Exploit DB Packet Storm |
200136 | 5 | 警告 | The Perl Foundation | - | Perl における UTF-8 文字列の処理に関するサービス運用妨害 (DoS) の脆弱性 |
CWE-Other
その他 |
CVE-2009-3626 | 2010-05-19 17:57 | 2009-10-29 | Show | GitHub Exploit DB Packet Storm |
200137 | 9.3 | 危険 | サン・マイクロシステムズ | - | Java NPAPI plugin および Java Deployment Toolkit における任意のコードを実行される脆弱性 |
CWE-78
OSコマンド・インジェクション |
CVE-2010-1423 | 2010-05-19 17:56 | 2010-04-15 | Show | GitHub Exploit DB Packet Storm |
200138 | 4.3 | 警告 | ISC, Inc. サイバートラスト株式会社 サン・マイクロシステムズ ターボリナックス ヒューレット・パッカード レッドハット |
- | BIND 9 の DNSSEC 検証コードに脆弱性 |
CWE-Other
その他 |
CVE-2010-0097 | 2010-05-19 17:42 | 2010-01-20 | Show | GitHub Exploit DB Packet Storm |
200139 | 9.3 | 危険 | サイバートラスト株式会社 Wireshark レッドハット |
- | Wireshark の erf ファイル処理に脆弱性 |
CWE-189
数値処理の問題 |
CVE-2009-3829 | 2010-05-19 17:42 | 2009-10-7 | Show | GitHub Exploit DB Packet Storm |
200140 | 10 | 危険 | アップル | - | Apple Mac OS X 上で稼働する Safari における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2010-1120 | 2010-05-18 16:39 | 2010-03-25 | Show | GitHub Exploit DB Packet Storm |
Update Date:Oct. 5, 2024, 8:11 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
1391 | 8.1 |
HIGH
Network |
zoom |
meeting_software_development_kit rooms zoom |
Exposure of sensitive information in Zoom Client SDK's before 5.15.5 may allow an authenticated user to enable a denial of service via network access. |
CWE-668
Exposure of Resource to Wrong Sphere |
CVE-2023-39214 | 2024-09-28 05:15 | 2023-08-9 | Show | GitHub Exploit DB Packet Storm |
1392 | 9.8 |
CRITICAL
Network
zoom
|
virtual_desktop_infrastructure |
zoom
Improper neutralization of special elements in Zoom Desktop Client for Windows and Zoom VDI Client before 5.15.2 may allow an unauthenticated user to enable an escalation of privilege via network acc…
|
CWE-74
|
Injection
CVE-2023-39213
|
2024-09-28 05:15 |
2023-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1393 | 7.5 |
HIGH
Network
zoom
|
meeting_software_development_kit |
video_software_development_kit
Improper input validation in Zoom SDK’s before 5.14.10 may allow an unauthenticated user to enable a denial of service via network access.
|
NVD-CWE-noinfo
|
CVE-2023-39217
|
2024-09-28 05:15 |
2023-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1394 | 9.8 |
CRITICAL
Network
zoom
|
zoom
|
Improper input validation in Zoom Desktop Client for Windows before 5.14.7 may allow an unauthenticated user to enable an escalation of privilege via network access.
|
NVD-CWE-noinfo
|
CVE-2023-39216
|
2024-09-28 05:15 |
2023-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1395 | 5.7 |
MEDIUM
Network |
phoenixcontact |
tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs2000_4g_vzw_vpn_firmware tc_mgua… |
A low privileged remote attacker can get access to CSRF tokens of higher privileged users which can be abused to mount CSRF attacks. |
CWE-212
Improper Removal of Sensitive Information Before Storage or Transfer |
CVE-2024-7698 | 2024-09-28 04:39 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
1396 | 8.8 |
HIGH
Network |
apache | airflow_sqoop_provider | Apache Airflow Sqoop Provider, versions before 4.0.0, is affected by a vulnerability that allows an attacker pass parameters with the connections, which makes it possible to implement RCE attacks via… |
CWE-20
Improper Input Validation |
CVE-2023-27604 | 2024-09-28 04:35 | 2023-08-28 | Show | GitHub Exploit DB Packet Storm |
1397 | 8.8 |
HIGH
Network |
phoenixcontact |
tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs2000_4g_vzw_vpn_firmware tc_mgua… |
A low privileged remote attacker can read and write files as root due to improper neutralization of special elements in the variable EMAIL_RELAY_PASSWORD in mGuard devices. |
CWE-78
OS Command |
CVE-2024-43387 | 2024-09-28 04:33 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
1398 | 8.8 |
HIGH
Network |
phoenixcontact |
tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs2000_4g_vzw_vpn_firmware tc_mgua… |
A low privileged remote attacker can trigger the execution of arbitrary OS commands as root due to improper neutralization of special elements in the variable EMAIL_NOTIFICATION.TO in mGuard devices. |
CWE-78
OS Command |
CVE-2024-43386 | 2024-09-28 04:33 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
1399 | 8.8 |
HIGH
Network |
phoenixcontact |
tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs2000_4g_vzw_vpn_firmware tc_mgua… |
A low privileged remote attacker can trigger the execution of arbitrary OS commands as root due to improper neutralization of special elements in the variable PROXY_HTTP_PORT in mGuard devices. |
CWE-78
OS Command |
CVE-2024-43385 | 2024-09-28 04:33 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
1400 | 8.8 |
HIGH
Network |
phoenixcontact |
tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs2000_4g_vzw_vpn_firmware tc_mgua… |
A low privileged remote attacker with write permissions can reconfigure the SNMP service due to improper input validation. |
NVD-CWE-noinfo
|
CVE-2024-43388 | 2024-09-28 04:32 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |