You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Oct. 23, 2024, 2:01 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
201961 | 5.7 | 警告 | 日本電気 インターネットイニシアティブ ヤマハ 古河電気工業 |
- | IPv6 を実装した複数の製品にサービス運用妨害 (DoS) の脆弱性 |
CWE-20
不適切な入力確認 |
- | 2010-01-25 11:47 | 2009-10-26 | Show | GitHub Exploit DB Packet Storm |
201962 | 9.3 | 危険 | マイクロソフト | - | 複数の Microsoft 製品のテキストコンバーターにおける整数オーバーフローの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-2506 | 2010-01-22 10:27 | 2009-12-8 | Show | GitHub Exploit DB Packet Storm |
201963 | 9 | 危険 | マイクロソフト | - | Microsoft Windows の Active Directory フェデレーションサービスにおける任意のコードを実行される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2009-2509 | 2010-01-22 10:27 | 2009-12-8 | Show | GitHub Exploit DB Packet Storm |
201964 | 6.9 | 警告 | マイクロソフト | - | Microsoft Windows の Active Directory フェデレーションサービスのシングルサインオン実装における認証情報を取得される脆弱性 |
CWE-255
証明書・パスワード管理 |
CVE-2009-2508 | 2010-01-22 10:27 | 2009-12-8 | Show | GitHub Exploit DB Packet Storm |
201965 | 6.8 | 警告 | マイクロソフト | - | Microsoft Windows の LSASS におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2009-3675 | 2010-01-22 10:27 | 2009-12-8 | Show | GitHub Exploit DB Packet Storm |
201966 | 9.3 | 危険 | マイクロソフト | - | Microsoft Project における任意のコードを実行される脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2009-0102 | 2010-01-22 10:26 | 2009-12-8 | Show | GitHub Exploit DB Packet Storm |
201967 | 9.3 | 危険 | マイクロソフト | - | Microsoft Internet Explorer におけるメモリ破損の脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-3673 | 2010-01-22 10:26 | 2009-12-8 | Show | GitHub Exploit DB Packet Storm |
201968 | 9.3 | 危険 | マイクロソフト | - | Microsoft Internet Explorer におけるメモリ破損の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2009-3671 | 2010-01-22 10:26 | 2009-12-8 | Show | GitHub Exploit DB Packet Storm |
201969 | 10 | 危険 | マイクロソフト | - | Microsoft Windows のインターネット認証サービスにおけるネットワークリソースにアクセスされる脆弱性 |
CWE-255 CWE-94 |
CVE-2009-3677 | 2010-01-22 10:24 | 2009-12-8 | Show | GitHub Exploit DB Packet Storm |
201970 | 10 | 危険 | マイクロソフト | - | Microsoft Windows のインターネット認証サービスにおける任意のコードを実行される脆弱性 |
CWE-287
不適切な認証 |
CVE-2009-2505 | 2010-01-22 10:24 | 2009-12-8 | Show | GitHub Exploit DB Packet Storm |
Update Date:Oct. 23, 2024, 12:18 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
421 | 7.5 |
HIGH
Network
oisf
|
suricata
|
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to version 7.0.7, rules using datasets with the non-functional / unimplemen…
Update
|
CWE-617
|
Reachable Assertion
CVE-2024-45795
|
2024-10-22 22:35 |
2024-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
422 | - | - | - | An Insecure Direct Object Reference (IDOR) vulnerability in KubeSphere v3.4.1 and v4.1.1 allows low-privileged authenticated attackers to access sensitive resources without proper authorization check… Update | - | CVE-2024-46528 | 2024-10-22 22:35 | 2024-10-15 | Show | GitHub Exploit DB Packet Storm | |
423 | 9.0 |
CRITICAL
Adjacent |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2016 windows_server_2022_23h2 windows_server_2022 windows_server_2019 |
Windows Netlogon Elevation of Privilege Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2024-38124 | 2024-10-22 22:35 | 2024-10-9 | Show | GitHub Exploit DB Packet Storm |
424 | 6.0 |
MEDIUM
Local |
amd |
ryzen_7_5700g_firmware ryzen_7_5700ge_firmware ryzen_5_5600g_firmware ryzen_5_5600gt_firmware ryzen_5_5600ge_firmware ryzen_5_5500gt_firmware ryzen_3_5300g_firmware ryzen_3_5300g… |
Improper Access Control in the AMD SPI protection feature may allow a user with Ring0 (kernel mode) privileged access to bypass protections potentially resulting in loss of integrity and availability… Update |
NVD-CWE-noinfo
|
CVE-2023-20579 | 2024-10-22 22:33 | 2024-02-14 | Show | GitHub Exploit DB Packet Storm |
425 | 4.9 |
MEDIUM
Network |
amd |
epyc_7773x_firmware epyc_7763_firmware epyc_7713_firmware epyc_7713p_firmware epyc_7663_firmware epyc_7663p_firmware epyc_7643_firmware epyc_7643p_firmware epyc_7573x_firmware… |
Due to a code bug in Secure_TSC, SEV firmware may allow an attacker with high privileges to cause a guest to observe an incorrect TSC when Secure TSC is enabled potentially resulting in a loss of gue… Update |
NVD-CWE-noinfo
|
CVE-2023-31347 | 2024-10-22 22:30 | 2024-02-14 | Show | GitHub Exploit DB Packet Storm |
426 | 9.8 |
CRITICAL
Network
siemens
|
location_intelligence
|
A vulnerability has been identified in Location Intelligence Perpetual Large (9DE5110-8CA13-1AX0) (All versions < V4.3), Location Intelligence Perpetual Medium (9DE5110-8CA12-1AX0) (All versions < V4…
Update
|
CWE-798
|
Use of Hard-coded Credentials
CVE-2024-23816
|
2024-10-22 22:10 |
2024-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
427 | 6.6 |
MEDIUM
Network |
microsoft | windows_server_2022_23h2 | Windows Kerberos Elevation of Privilege Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2024-38129 | 2024-10-22 22:05 | 2024-10-9 | Show | GitHub Exploit DB Packet Storm |
428 | 6.5 |
MEDIUM
Network |
mitsubishielectric |
r08sfcpu_firmware r16sfcpu_firmware r32sfcpu_firmware r120sfcpu_firmware r08psfcpu_firmware r16psfcpu_firmware r32psfcpu_firmware r120psfcpu_firmware |
Incorrect Privilege Assignment vulnerability in Mitsubishi Electric Corporation MELSEC iQ-R Series Safety CPU R08/16/32/120SFCPU all versions and MELSEC iQ-R Series SIL2 Process CPU R08/16/32/120PSFC… Update |
CWE-266
Incorrect Privilege Assignment |
CVE-2023-6815 | 2024-10-22 21:58 | 2024-02-13 | Show | GitHub Exploit DB Packet Storm |
429 | 7.5 |
HIGH
Network
microsoft
|
windows_server_2008 | windows_server_2012 windows_10_1507 windows_server_2016 windows_server_2022_23h2 windows_server_2022 windows_11_24h2 windows_10_1607 windows_server_2019
BranchCache Denial of Service Vulnerability
Update
|
NVD-CWE-noinfo
|
CVE-2024-38149
|
2024-10-22 21:55 |
2024-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
430 | 7.5 |
HIGH
Network |
microsoft |
windows_server_2008 windows_server_2012 windows_server_2016 windows_server_2022_23h2 windows_server_2022 windows_server_2019 |
Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability Update |
NVD-CWE-noinfo
|
CVE-2024-38262 | 2024-10-22 21:54 | 2024-10-9 | Show | GitHub Exploit DB Packet Storm |