You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Oct. 17, 2024, 6:02 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
201291 | 9.3 | 危険 | マイクロソフト | - | Microsoft Windows の Microsoft Paint における整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2010-0028 | 2010-03-3 11:54 | 2010-02-9 | Show | GitHub Exploit DB Packet Storm |
201292 | 7.2 | 危険 | マイクロソフト | - | Microsoft Windows の kernel における権限昇格の脆弱性 |
CWE-Other
その他 |
CVE-2010-0233 | 2010-03-3 11:54 | 2010-02-9 | Show | GitHub Exploit DB Packet Storm |
201293 | 6.3 | 警告 | マイクロソフト | - | Microsoft Windows の KDC におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-Other
その他 |
CVE-2010-0035 | 2010-03-3 11:54 | 2010-02-9 | Show | GitHub Exploit DB Packet Storm |
201294 | 7.1 | 危険 | マイクロソフト | - | Microsoft Windows の SMB 実装におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-362
競合状態 |
CVE-2010-0021 | 2010-03-3 11:54 | 2010-02-9 | Show | GitHub Exploit DB Packet Storm |
201295 | 10 | 危険 | マイクロソフト | - | Microsoft Windows の SMB 実装におけるアクセス権を取得される脆弱性 |
CWE-264 CWE-310 |
CVE-2010-0231 | 2010-03-3 11:54 | 2010-02-9 | Show | GitHub Exploit DB Packet Storm |
201296 | 7.8 | 危険 | マイクロソフト | - | Microsoft Windows の SMB 実装におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2010-0022 | 2010-03-3 11:53 | 2010-02-9 | Show | GitHub Exploit DB Packet Storm |
201297 | 9 | 危険 | マイクロソフト | - | Microsoft Windows の SMB 実装における任意のコードを実行される脆弱性 |
CWE-20 CWE-94 |
CVE-2010-0020 | 2010-03-3 11:53 | 2010-02-9 | Show | GitHub Exploit DB Packet Storm |
201298 | 6.9 | 警告 | マイクロソフト | - | Microsoft Windows の Client/Server Run-time Subsystem における権限昇格の脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2010-0023 | 2010-03-3 11:53 | 2010-02-9 | Show | GitHub Exploit DB Packet Storm |
201299 | 4 | 警告 | マイクロソフト | - | Microsoft Windows の Hyper-V サーバ実装におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2010-0026 | 2010-03-3 11:53 | 2010-02-9 | Show | GitHub Exploit DB Packet Storm |
201300 | 9.3 | 危険 | 日本電気 アップル 富士通 古河電気工業 ヒューレット・パッカード インターネットイニシアティブ アラクサラネットワークス 日立 |
- | IPv6 NDP 実装における Neighbor Discovery メッセージの送信元検証処理に関する脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2008-2476 | 2010-03-3 11:43 | 2008-10-3 | Show | GitHub Exploit DB Packet Storm |
Update Date:Oct. 10, 2024, 8:13 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
111 | 7.5 |
HIGH
Network
phpoffice
|
phpspreadsheet
|
PHPSpreadsheet is a pure PHP library for reading and writing spreadsheet files. It's possible for an attacker to construct an XLSX file which links media from external URLs. When opening the XLSX fil…
Update
|
CWE-918 |
CWE-36 Server-Side Request Forgery (SSRF) Absolute Path Traversal
CVE-2024-45290
|
2024-10-17 04:54 |
2024-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
112 | 8.2 |
HIGH
Network
qualcomm
|
qca6574au_firmware |
qca6574a_firmware qca6564au_firmware qca6564a_firmware mdm9628_firmware
Information disclosure while parsing the multiple MBSSID IEs from the beacon.
Update
|
CWE-125
|
Out-of-bounds Read
CVE-2024-33064
|
2024-10-17 04:52 |
2024-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
113 | 7.5 |
HIGH
Network
openrefine
|
openrefine
|
OpenRefine is a free, open source power tool for working with messy data and improving it. A jdbc attack vulnerability exists in OpenRefine(version<=3.7.7) where an attacker may construct a JDBC quer…
Update
|
CWE-863
|
Incorrect Authorization
CVE-2024-23833
|
2024-10-17 04:51 |
2024-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
114 | 7.8 |
HIGH
Local |
qualcomm |
wsa8845h_firmware wsa8845_firmware wsa8840_firmware wsa8835_firmware wsa8830_firmware wsa8815_firmware wsa8810_firmware wcd9385_firmware wcd9380_firmware wcd9375_firmware | Memory corruption while taking snapshot when an offset variable is set by camera driver. Update |
NVD-CWE-noinfo
|
CVE-2024-33065 | 2024-10-17 04:50 | 2024-10-7 | Show | GitHub Exploit DB Packet Storm |
115 | 9.8 |
CRITICAL
Network
qualcomm
|
snapdragon_x65_5g_modem-rf_system_firmware |
sdx65m_firmware sdx55_firmware qxm8083_firmware qcn9274_firmware qcn9160_firmware qcn9100_firmware qcn9074_firmware qcn9072_firmware…
Memory corruption while redirecting log file to any file location with any file name.
Update
|
NVD-CWE-noinfo
|
CVE-2024-33066
|
2024-10-17 04:49 |
2024-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
116 | 7.5 |
HIGH
Network
qualcomm
|
wsa8835_firmware |
wsa8830_firmware wsa8815_firmware wsa8810_firmware wcn3988_firmware wcn3980_firmware wcd9385_firmware wcd9380_firmware sw5100p_firmware sw5100_firmware …
Transient DOS when transmission of management frame sent by host is not successful and error status is received in the host.
Update
|
CWE-416
|
Use After Free
CVE-2024-33069
|
2024-10-17 04:48 |
2024-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
117 | 7.5 |
HIGH
Network
qualcomm
|
qca6574au_firmware |
qca6574a_firmware qca6564au_firmware qca6564a_firmware mdm9628_firmware
Transient DOS while parsing ESP IE from beacon/probe response frame.
Update
|
CWE-125
|
Out-of-bounds Read
CVE-2024-33070
|
2024-10-17 04:47 |
2024-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
118 | 7.5 |
HIGH
Network
qualcomm
|
mdm9628_firmware |
qca6564a_firmware qca6564au_firmware qca6574a_firmware qca6574au_firmware
Transient DOS while parsing the MBSSID IE from the beacons when IE length is 0.
Update
|
CWE-125
|
Out-of-bounds Read
CVE-2024-33071
|
2024-10-17 04:41 |
2024-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
119 | 7.5 |
HIGH
Network
steve_project
|
steve
|
SteVe v3.6.0 was discovered to use predictable transaction ID's when receiving a StartTransaction request. This vulnerability can allow attackers to cause a Denial of Service (DoS) by using the predi…
Update
|
CWE-331
|
Insufficient Entropy
CVE-2024-25407
|
2024-10-17 04:41 |
2024-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
120 | 5.0 |
MEDIUM
Local |
exiv2 | exiv2 | Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image files. An out-of-bounds read was found in Exiv2 version v0.28.1. The vulnerable fun… Update |
CWE-125
Out-of-bounds Read |
CVE-2024-24826 | 2024-10-17 04:39 | 2024-02-13 | Show | GitHub Exploit DB Packet Storm |