|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 11, 2026, 12:16 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 226191 | 6.8 | 警告 | zenas | - | Zenas PaoLink の login.php における認証を回避される脆弱性 |
CWE-287
不適切な認証 |
CVE-2009-3423 | 2012-12-20 19:28 | 2009-09-25 | Show | GitHub Exploit DB Packet Storm |
| 226192 | 6.8 | 警告 | zenas | - | Zenas PaoLiber の login.php における認証を回避される脆弱性 |
CWE-287
不適切な認証 |
CVE-2009-3422 | 2012-12-20 19:28 | 2009-09-25 | Show | GitHub Exploit DB Packet Storm |
| 226193 | 6.8 | 警告 | zenas | - | Zenas PaoBacheca Guestbook の login.php における認証を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-3421 | 2012-12-20 19:28 | 2009-09-25 | Show | GitHub Exploit DB Packet Storm |
| 226194 | 6.5 | 警告 | Plume CMS | - | Plume CMS における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-3418 | 2012-12-20 19:28 | 2009-09-25 | Show | GitHub Exploit DB Packet Storm |
| 226195 | 4.3 | 警告 | Plohni | - | An image gallery におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3367 | 2012-12-20 19:28 | 2009-09-24 | Show | GitHub Exploit DB Packet Storm |
| 226196 | 5 | 警告 | Plohni | - | An image gallery の navigation.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-3366 | 2012-12-20 19:28 | 2009-09-24 | Show | GitHub Exploit DB Packet Storm |
| 226197 | 7.5 | 危険 | traza | - | Aurora CMS の add-ons/modules/sysmanager/plugins/install.plugin.php における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-3365 | 2012-12-20 19:28 | 2009-09-24 | Show | GitHub Exploit DB Packet Storm |
| 226198 | 4.3 | 警告 | ufku bayburt | - | Drupal 用の BUEditor モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3363 | 2012-12-20 19:28 | 2009-09-9 | Show | GitHub Exploit DB Packet Storm |
| 226199 | 7.5 | 危険 | sznews | - | SZNews の printnews.php3 における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-3362 | 2012-12-20 19:28 | 2009-09-24 | Show | GitHub Exploit DB Packet Storm |
| 226200 | 7.5 | 危険 | tourismscripts | - | Tourism Scripts Adult Portal エスコートリストの profile.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-3358 | 2012-12-20 19:28 | 2009-09-24 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 11, 2026, 4:09 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 211241 | 7.8 |
HIGH
Local |
qualcomm |
apq8098_firmware msm8998_firmware qcm4290_firmware qcm6125_firmware qcs410_firmware qcs4290_firmware qcs610_firmware qcs6125_firmware qsm8250_firmware qsm8350_firmware s… |
Possible buffer overflow in Fastrpc while handling received parameters due to lack of validation on input parameters' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Indus… |
NVD-CWE-Other
|
CVE-2020-11206 | 2024-11-21 13:57 | 2020-11-12 | Show | GitHub Exploit DB Packet Storm |
| 211242 | 7.8 |
HIGH
Local |
qualcomm |
qsm8350_firmware sa6145p_firmware sa6150p_firmware sa6155_firmware sa6155p_firmware sa8150p_firmware sa8155p_firmware sa8195p_firmware sdx55m_firmware sm8250_firmware sm… |
u'Possible integer overflow to heap overflow while processing command due to lack of check of packet length received' in Snapdragon Auto, Snapdragon Compute, Snapdragon Mobile in QSM8350, SA6145P, SA… |
CWE-787 CWE-190 Out-of-bounds Write Integer Overflow or Wraparound |
CVE-2020-11205 | 2024-11-21 13:57 | 2020-11-12 | Show | GitHub Exploit DB Packet Storm |
| 211243 | 7.8 |
HIGH
Local |
qualcomm |
qcm6125_firmware qcs410_firmware qcs603_firmware qcs605_firmware qcs610_firmware qcs6125_firmware sa6145p_firmware sa6155_firmware sa6155p_firmware sa8155_firmware sa815… |
Buffer overflow/underflow occurs when typecasting the buffer passed by CPU internally in the library which is not aligned with the actual size of the structure' in Snapdragon Auto, Snapdragon Compute… |
CWE-787
Out-of-bounds Write |
CVE-2020-11202 | 2024-11-21 13:57 | 2020-11-12 | Show | GitHub Exploit DB Packet Storm |
| 211244 | 7.8 |
HIGH
Local |
qualcomm |
qcm6125_firmware qcs410_firmware qcs603_firmware qcs605_firmware qcs610_firmware qcs6125_firmware sa6145p_firmware sa6155_firmware sa6155p_firmware sa8155_firmware sa815… |
Arbitrary access to DSP memory due to improper check in loaded library for data received from CPU side' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Sna… |
CWE-20
Improper Input Validation |
CVE-2020-11201 | 2024-11-21 13:57 | 2020-11-12 | Show | GitHub Exploit DB Packet Storm |
| 211245 | 9.8 |
CRITICAL
Network |
qualcomm |
apq8009_firmware apq8009w_firmware apq8017_firmware apq8037_firmware apq8053_firmware apq8064au_firmware apq8096_firmware apq8096au_firmware apq8096sg_firmware apq8098_firm… |
u'Integer overflow to buffer overflow occurs while playback of ASF clip having unexpected number of codec entries' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industri… |
CWE-119 CWE-190 Incorrect Access of Indexable Resource ('Range Error') Integer Overflow or Wraparound |
CVE-2020-11196 | 2024-11-21 13:57 | 2020-11-12 | Show | GitHub Exploit DB Packet Storm |
| 211246 | 9.8 |
CRITICAL
Network |
qualcomm |
apq8009_firmware apq8009w_firmware apq8017_firmware apq8037_firmware apq8053_firmware apq8064au_firmware apq8096_firmware apq8096au_firmware apq8096sg_firmware apq8098_firm… |
u'Buffer over read can happen while parsing mkv clip due to improper typecasting of data returned from atomsize' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial… |
CWE-125
Out-of-bounds Read |
CVE-2020-11193 | 2024-11-21 13:57 | 2020-11-12 | Show | GitHub Exploit DB Packet Storm |
| 211247 | 9.8 |
CRITICAL
Network |
qualcomm |
qcm4290_firmware qcs4290_firmware qm215_firmware qsm8350_firmware sa6145p_firmware sa6155_firmware sa6155p_firmware sa8155_firmware sa8155p_firmware sdx55_firmware sdx55… |
u'Possible buffer overflow will occur in video while parsing mp4 clip with crafted esds atom size.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobile in QCM4290, QC… |
CWE-190
Integer Overflow or Wraparound |
CVE-2020-11184 | 2024-11-21 13:57 | 2020-11-12 | Show | GitHub Exploit DB Packet Storm |
| 211248 | 7.8 |
HIGH
Local |
qualcomm |
apq8009w_firmware msm8909w_firmware qcs605_firmware qm215_firmware sa6155_firmware sa6155p_firmware sa8155_firmware sa8155p_firmware sda640_firmware sda670_firmware sda8… |
u'Use after free issue in Bluetooth transport driver when a method in the object is accessed after the object has been deleted due to improper timer handling.' in Snapdragon Auto, Snapdragon Compute,… |
CWE-416
Use After Free |
CVE-2020-11175 | 2024-11-21 13:57 | 2020-11-12 | Show | GitHub Exploit DB Packet Storm |
| 211249 | 9.8 |
CRITICAL
Network |
qualcomm |
apq8009w_firmware apq8017_firmware apq8053_firmware apq8064au_firmware apq8096au_firmware apq8098_firmware mdm9206_firmware mdm9650_firmware msm8909w_firmware msm8953_firmw… |
u'Null-pointer dereference can occur while accessing data buffer beyond its size that leads to access the buffer beyond its range' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Sna… |
CWE-476
NULL Pointer Dereference |
CVE-2020-11168 | 2024-11-21 13:57 | 2020-11-12 | Show | GitHub Exploit DB Packet Storm |
| 211250 | 9.8 |
CRITICAL
Network |
qualcomm |
ipq4019_firmware ipq6018_firmware ipq8064_firmware ipq8074_firmware qca9531_firmware qca9980_firmware |
u'fscanf reads a string from a file and stores its contents on a statically allocated stack memory which leads to stack overflow' in Snapdragon Wired Infrastructure and Networking in IPQ4019, IPQ6018… |
CWE-120
Classic Buffer Overflow |
CVE-2020-11172 | 2024-11-21 13:57 | 2020-11-2 | Show | GitHub Exploit DB Packet Storm |