|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 24, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 227601 | 7.5 | 危険 | questions answered | - | Questions Answered の管理インターフェースにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4728 | 2012-12-20 19:28 | 2010-03-18 | Show | GitHub Exploit DB Packet Storm |
| 227602 | 4.3 | 警告 | phpscriptsnow | - | Real Time Currency Exchange の rates.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4715 | 2012-12-20 19:28 | 2010-03-15 | Show | GitHub Exploit DB Packet Storm |
| 227603 | 7.5 | 危険 | tukanas | - | Tukanas Classifieds Script の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4712 | 2012-12-20 19:28 | 2010-03-15 | Show | GitHub Exploit DB Packet Storm |
| 227604 | 4.3 | 警告 | Pligg | - | Pligg におけるオープンリダイレクトの脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2009-4788 | 2012-12-20 19:28 | 2009-11-30 | Show | GitHub Exploit DB Packet Storm |
| 227605 | 6.8 | 警告 | Pligg | - | Pligg におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2009-4787 | 2012-12-20 19:28 | 2009-11-30 | Show | GitHub Exploit DB Packet Storm |
| 227606 | 4.3 | 警告 | Pligg | - | Pligg におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4786 | 2012-12-20 19:28 | 2009-11-30 | Show | GitHub Exploit DB Packet Storm |
| 227607 | 4.3 | 警告 | phpMyFAQ | - | phpMyFAQ の index.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4780 | 2012-12-20 19:28 | 2009-12-1 | Show | GitHub Exploit DB Packet Storm |
| 227608 | 6.8 | 警告 | Ubercart | - | Drupal 用の Ubercart モジュールにおけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2009-4773 | 2012-12-20 19:28 | 2009-11-18 | Show | GitHub Exploit DB Packet Storm |
| 227609 | 4.3 | 警告 | Ubercart | - | Drupal 用の Ubercart モジュールにおける重要な情報を取得される脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-4772 | 2012-12-20 19:28 | 2009-11-18 | Show | GitHub Exploit DB Packet Storm |
| 227610 | 5 | 警告 | Ubercart | - | Drupal 用の Ubercart モジュールにおける不特定の "複製操作" を誘発される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2009-4771 | 2012-12-20 19:28 | 2009-11-18 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 25, 2026, 4:01 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 195571 | 4.3 |
MEDIUM
Adjacent |
qualcomm |
aqt1000_firmware qca6164_firmware qca6174_firmware qca6174a_firmware qca6420_firmware qca6430_firmware qca9377_firmware sc8180x_firmware sd_8c_firmware sd_8cx_firmware s… |
Weak configuration in WLAN could cause forwarding of unencrypted packets from one client to another in Snapdragon Compute, Snapdragon Connectivity |
CWE-319
Cleartext Transmission of Sensitive Information |
CVE-2021-1896 | 2024-11-21 14:45 | 2021-07-13 | Show | GitHub Exploit DB Packet Storm |
| 195572 | 7.5 |
HIGH
Network |
qualcomm |
apq8053_firmware aqt1000_firmware ar9380_firmware csr8811_firmware csrb31024_firmware ipq4018_firmware ipq4019_firmware ipq4028_firmware ipq4029_firmware ipq5010_firmware | Possible buffer out of bound read can occur due to improper validation of TBTT count and length while parsing the beacon response in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snap… |
CWE-125
Out-of-bounds Read |
CVE-2021-1943 | 2024-11-21 14:45 | 2021-07-13 | Show | GitHub Exploit DB Packet Storm |
| 195573 | 7.5 |
HIGH
Network |
qualcomm |
ar7420_firmware ar9380_firmware csr8811_firmware ipq4018_firmware ipq4019_firmware ipq4028_firmware ipq4029_firmware ipq8064_firmware ipq8065_firmware ipq8069_firmware i… |
An assertion can be reached in the WLAN subsystem while using the Wi-Fi Fine Timing Measurement protocol in Snapdragon Wired Infrastructure and Networking |
CWE-617
Reachable Assertion |
CVE-2021-1887 | 2024-11-21 14:45 | 2021-07-13 | Show | GitHub Exploit DB Packet Storm |
| 195574 | 7.5 |
HIGH
Network |
qualcomm |
aqt1000_firmware ar8031_firmware ar8035_firmware ar9380_firmware csr8811_firmware csra6620_firmware csra6640_firmware csrb31024_firmware fsm10055_firmware ipq4018_firmware<… |
Possible assertion due to improper verification while creating and deleting the peer in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Sna… |
CWE-617
Reachable Assertion |
CVE-2021-1938 | 2024-11-21 14:45 | 2021-07-13 | Show | GitHub Exploit DB Packet Storm |
| 195575 | 7.8 |
HIGH
Local |
qualcomm |
apq8017_firmware apq8037_firmware apq8053_firmware apq8064au_firmware apq8096au_firmware aqt1000_firmware ar8031_firmware ar8035_firmware csra6620_firmware csra6640_firmwar… |
Improper length check of public exponent in RSA import key function could cause memory corruption. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon… |
CWE-787
Out-of-bounds Write |
CVE-2021-1890 | 2024-11-21 14:45 | 2021-07-13 | Show | GitHub Exploit DB Packet Storm |
| 195576 | 7.8 |
HIGH
Local |
qualcomm |
apq8017_firmware apq8037_firmware apq8053_firmware apq8064au_firmware apq8096au_firmware aqt1000_firmware ar8031_firmware ar8035_firmware csra6620_firmware csra6640_firmwar… |
Possible buffer overflow due to lack of length check in Trusted Application in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdr… |
CWE-120
Classic Buffer Overflow |
CVE-2021-1889 | 2024-11-21 14:45 | 2021-07-13 | Show | GitHub Exploit DB Packet Storm |
| 195577 | 7.8 |
HIGH
Local |
qualcomm |
apq8017_firmware apq8037_firmware apq8053_firmware apq8064au_firmware apq8096au_firmware aqt1000_firmware ar8031_firmware ar8035_firmware csra6620_firmware csra6640_firmwar… |
Memory corruption in key parsing and import function due to double freeing the same heap allocation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdrago… |
CWE-415
Double Free |
CVE-2021-1888 | 2024-11-21 14:45 | 2021-07-13 | Show | GitHub Exploit DB Packet Storm |
| 195578 | 7.8 |
HIGH
Local |
qualcomm |
apq8017_firmware apq8037_firmware apq8053_firmware apq8064au_firmware apq8096au_firmware aqt1000_firmware ar8031_firmware ar8035_firmware csra6620_firmware csra6640_firmwar… |
Incorrect handling of pointers in trusted application key import mechanism could cause memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snap… |
CWE-787
Out-of-bounds Write |
CVE-2021-1886 | 2024-11-21 14:45 | 2021-07-13 | Show | GitHub Exploit DB Packet Storm |
| 195579 | 8.1 |
HIGH
Adjacent |
sonicwall | switch | Multiple Out-of-Bound read vulnerability in SonicWall Switch when handling LLDP Protocol allows an attacker to cause a system instability or potentially read sensitive information from the memory loc… |
CWE-125
Out-of-bounds Read |
CVE-2021-20024 | 2024-11-21 14:45 | 2021-07-10 | Show | GitHub Exploit DB Packet Storm |
| 195580 | 5.4 |
MEDIUM
Adjacent |
sloan |
optima_eaf-100_firmware optima_eaf-150_firmware optima_eaf-200_firmware optima_eaf-225_firmware optima_eaf-250_firmware optima_eaf-275_firmware optima_eaf-350_firmware optima_eaf… |
There exists an unauthenticated BLE Interface in Sloan SmartFaucets including Optima EAF, Optima ETF/EBF, BASYS EFX, and Flushometers including SOLIS. The vulnerability allows for unauthenticated kin… |
CWE-306
Missing Authentication for Critical Function |
CVE-2021-20107 | 2024-11-21 14:45 | 2021-06-30 | Show | GitHub Exploit DB Packet Storm |