|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 24, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 227611 | 9 | 危険 | Codeorigin | - | Sysax Multi Server におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-4790 | 2012-12-20 19:28 | 2010-04-22 | Show | GitHub Exploit DB Packet Storm |
| 227612 | 7.2 | 危険 | tukeva | - | TUKEVA Password Reminder における資格情報を発見される脆弱性 |
CWE-255
証明書・パスワード管理 |
CVE-2009-4781 | 2012-12-20 19:28 | 2010-04-21 | Show | GitHub Exploit DB Packet Storm |
| 227613 | 7.5 | 危険 | robert garrigos | - | NukeHall における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-4779 | 2012-12-20 19:28 | 2010-04-21 | Show | GitHub Exploit DB Packet Storm |
| 227614 | 4.3 | 警告 | Plohni | - | Plohni Shoutbox の index.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4767 | 2012-12-20 19:28 | 2010-04-20 | Show | GitHub Exploit DB Packet Storm |
| 227615 | 5 | 警告 | yasirpro | - | YP Portal MS-Pro Surumu におけるデータベースをダウンロードされる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-4766 | 2012-12-20 19:28 | 2010-04-13 | Show | GitHub Exploit DB Packet Storm |
| 227616 | 6.8 | 警告 | phpmyvisites | - | phpMyVisites に使用されている ClickHeat プラグインにおける脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-4763 | 2012-12-20 19:28 | 2010-03-30 | Show | GitHub Exploit DB Packet Storm |
| 227617 | 5 | 警告 | Winn GuestBook | - | Winn ASP Guestbook におけるデータベースをダウンロードされる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-4760 | 2012-12-20 19:28 | 2010-03-29 | Show | GitHub Exploit DB Packet Storm |
| 227618 | 7.5 | 危険 | phppower | - | Swinger Club Portal の anzeiger/start.php における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-4752 | 2012-12-20 19:28 | 2010-03-26 | Show | GitHub Exploit DB Packet Storm |
| 227619 | 7.5 | 危険 | phppower | - | Swinger Club Portal の anzeiger/start.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4751 | 2012-12-20 19:28 | 2010-03-26 | Show | GitHub Exploit DB Packet Storm |
| 227620 | 6.8 | 警告 | phppower | - | Top Paidmailer の home.php における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-4750 | 2012-12-20 19:28 | 2010-03-26 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 24, 2026, 4:05 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 195571 | 4.3 |
MEDIUM
Adjacent |
qualcomm |
aqt1000_firmware qca6164_firmware qca6174_firmware qca6174a_firmware qca6420_firmware qca6430_firmware qca9377_firmware sc8180x_firmware sd_8c_firmware sd_8cx_firmware s… |
Weak configuration in WLAN could cause forwarding of unencrypted packets from one client to another in Snapdragon Compute, Snapdragon Connectivity |
CWE-319
Cleartext Transmission of Sensitive Information |
CVE-2021-1896 | 2024-11-21 14:45 | 2021-07-13 | Show | GitHub Exploit DB Packet Storm |
| 195572 | 7.5 |
HIGH
Network |
qualcomm |
apq8053_firmware aqt1000_firmware ar9380_firmware csr8811_firmware csrb31024_firmware ipq4018_firmware ipq4019_firmware ipq4028_firmware ipq4029_firmware ipq5010_firmware | Possible buffer out of bound read can occur due to improper validation of TBTT count and length while parsing the beacon response in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snap… |
CWE-125
Out-of-bounds Read |
CVE-2021-1943 | 2024-11-21 14:45 | 2021-07-13 | Show | GitHub Exploit DB Packet Storm |
| 195573 | 7.5 |
HIGH
Network |
qualcomm |
ar7420_firmware ar9380_firmware csr8811_firmware ipq4018_firmware ipq4019_firmware ipq4028_firmware ipq4029_firmware ipq8064_firmware ipq8065_firmware ipq8069_firmware i… |
An assertion can be reached in the WLAN subsystem while using the Wi-Fi Fine Timing Measurement protocol in Snapdragon Wired Infrastructure and Networking |
CWE-617
Reachable Assertion |
CVE-2021-1887 | 2024-11-21 14:45 | 2021-07-13 | Show | GitHub Exploit DB Packet Storm |
| 195574 | 7.5 |
HIGH
Network |
qualcomm |
aqt1000_firmware ar8031_firmware ar8035_firmware ar9380_firmware csr8811_firmware csra6620_firmware csra6640_firmware csrb31024_firmware fsm10055_firmware ipq4018_firmware<… |
Possible assertion due to improper verification while creating and deleting the peer in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Sna… |
CWE-617
Reachable Assertion |
CVE-2021-1938 | 2024-11-21 14:45 | 2021-07-13 | Show | GitHub Exploit DB Packet Storm |
| 195575 | 7.8 |
HIGH
Local |
qualcomm |
apq8017_firmware apq8037_firmware apq8053_firmware apq8064au_firmware apq8096au_firmware aqt1000_firmware ar8031_firmware ar8035_firmware csra6620_firmware csra6640_firmwar… |
Improper length check of public exponent in RSA import key function could cause memory corruption. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon… |
CWE-787
Out-of-bounds Write |
CVE-2021-1890 | 2024-11-21 14:45 | 2021-07-13 | Show | GitHub Exploit DB Packet Storm |
| 195576 | 7.8 |
HIGH
Local |
qualcomm |
apq8017_firmware apq8037_firmware apq8053_firmware apq8064au_firmware apq8096au_firmware aqt1000_firmware ar8031_firmware ar8035_firmware csra6620_firmware csra6640_firmwar… |
Possible buffer overflow due to lack of length check in Trusted Application in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdr… |
CWE-120
Classic Buffer Overflow |
CVE-2021-1889 | 2024-11-21 14:45 | 2021-07-13 | Show | GitHub Exploit DB Packet Storm |
| 195577 | 7.8 |
HIGH
Local |
qualcomm |
apq8017_firmware apq8037_firmware apq8053_firmware apq8064au_firmware apq8096au_firmware aqt1000_firmware ar8031_firmware ar8035_firmware csra6620_firmware csra6640_firmwar… |
Memory corruption in key parsing and import function due to double freeing the same heap allocation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdrago… |
CWE-415
Double Free |
CVE-2021-1888 | 2024-11-21 14:45 | 2021-07-13 | Show | GitHub Exploit DB Packet Storm |
| 195578 | 7.8 |
HIGH
Local |
qualcomm |
apq8017_firmware apq8037_firmware apq8053_firmware apq8064au_firmware apq8096au_firmware aqt1000_firmware ar8031_firmware ar8035_firmware csra6620_firmware csra6640_firmwar… |
Incorrect handling of pointers in trusted application key import mechanism could cause memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snap… |
CWE-787
Out-of-bounds Write |
CVE-2021-1886 | 2024-11-21 14:45 | 2021-07-13 | Show | GitHub Exploit DB Packet Storm |
| 195579 | 8.1 |
HIGH
Adjacent |
sonicwall | switch | Multiple Out-of-Bound read vulnerability in SonicWall Switch when handling LLDP Protocol allows an attacker to cause a system instability or potentially read sensitive information from the memory loc… |
CWE-125
Out-of-bounds Read |
CVE-2021-20024 | 2024-11-21 14:45 | 2021-07-10 | Show | GitHub Exploit DB Packet Storm |
| 195580 | 5.4 |
MEDIUM
Adjacent |
sloan |
optima_eaf-100_firmware optima_eaf-150_firmware optima_eaf-200_firmware optima_eaf-225_firmware optima_eaf-250_firmware optima_eaf-275_firmware optima_eaf-350_firmware optima_eaf… |
There exists an unauthenticated BLE Interface in Sloan SmartFaucets including Optima EAF, Optima ETF/EBF, BASYS EFX, and Flushometers including SOLIS. The vulnerability allows for unauthenticated kin… |
CWE-306
Missing Authentication for Critical Function |
CVE-2021-20107 | 2024-11-21 14:45 | 2021-06-30 | Show | GitHub Exploit DB Packet Storm |