|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 28, 2026, 10 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 227891 | 6.8 | 警告 | phpgroupware | - | phpGroupWare の phpgwapi /inc/class.auth_sql.inc.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4414 | 2012-12-20 19:28 | 2009-12-24 | Show | GitHub Exploit DB Packet Storm |
| 227892 | 5 | 警告 | pps.jussieu | - | Polipo の client.c におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-189
数値処理の問題 |
CVE-2009-4413 | 2012-12-20 19:28 | 2009-12-24 | Show | GitHub Exploit DB Packet Storm |
| 227893 | 6 | 警告 | s9y | - | Serendipity における任意のコードを実行される脆弱性 |
CWE-Other
その他 |
CVE-2009-4412 | 2012-12-20 19:28 | 2009-12-21 | Show | GitHub Exploit DB Packet Storm |
| 227894 | 3.7 | 注意 | xfs | - | XFS acl の setfacl および getfacl コマンドにおける任意のファイルなど対する ACL を変更される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-4411 | 2012-12-20 19:28 | 2009-12-24 | Show | GitHub Exploit DB Packet Storm |
| 227895 | 4.3 | 警告 | pyforum | - | PyForum および zForum の models.parser におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4408 | 2012-12-20 19:28 | 2009-12-23 | Show | GitHub Exploit DB Packet Storm |
| 227896 | 6.8 | 警告 | pyforum | - | PyForum などにおけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2009-4407 | 2012-12-20 19:28 | 2009-12-23 | Show | GitHub Exploit DB Packet Storm |
| 227897 | 4.3 | 警告 | rumbacms | - | Rumba XML の index.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4403 | 2012-12-20 19:28 | 2009-12-23 | Show | GitHub Exploit DB Packet Storm |
| 227898 | 7.5 | 危険 | sql-ledger | - | SQL-Ledger の初期設定における管理操作を実行される脆弱性 |
CWE-16
環境設定 |
CVE-2009-4402 | 2012-12-20 19:28 | 2009-12-23 | Show | GitHub Exploit DB Packet Storm |
| 227899 | 7.5 | 危険 | fr.simon rundell TYPO3 Association |
- | TYPO3 用の Portsmouth Resources Database エクステンションにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4396 | 2012-12-20 19:28 | 2009-12-22 | Show | GitHub Exploit DB Packet Storm |
| 227900 | 7.5 | 危険 | TYPO3 Association | - | TYPO3 用の XDS Staff List エクステンションにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4392 | 2012-12-20 19:28 | 2009-12-22 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 28, 2026, 4:16 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 311051 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted MODEL file when parsed in libodxdll.dll through Autodesk AutoCAD can force a Use-After-Free vulnerability. A malicious actor can leverage this vulnerability to cause a crash, wr… |
CWE-416
Use After Free |
CVE-2024-8595 | 2024-11-2 01:18 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
| 311052 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted MODEL file when parsed in libodxdll.dll through Autodesk AutoCAD can force a Heap-Based Overflow vulnerability. A malicious actor can leverage this vulnerability to cause a cras… |
CWE-787
Out-of-bounds Write |
CVE-2024-8594 | 2024-11-2 01:18 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
| 311053 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted CATPART file when parsed in ASMKERN230A.dll through Autodesk AutoCAD can force a Out-of-Bounds Write vulnerability. A malicious actor can leverage this vulnerability to cause a… |
CWE-787
Out-of-bounds Write |
CVE-2024-8593 | 2024-11-2 01:18 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
| 311054 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted 3DM file when parsed in AcTranslators.exe through Autodesk AutoCAD can force a Heap-Based Buffer Overflow vulnerability. A malicious actor can leverage this vulnerability to ca… |
CWE-787
Out-of-bounds Write |
CVE-2024-8591 | 2024-11-2 01:18 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
| 311055 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted 3DM file when parsed in atf_api.dll through Autodesk AutoCAD can force a Use-After-Free vulnerability. A malicious actor can leverage this vulnerability to cause a crash, write… |
CWE-416
Use After Free |
CVE-2024-8590 | 2024-11-2 01:18 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
| 311056 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted SLDPRT file when parsed in odxsw_dll.dll through Autodesk AutoCAD can force a Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a cra… |
CWE-125
Out-of-bounds Read |
CVE-2024-8589 | 2024-11-2 01:18 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
| 311057 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted CATPART file when parsed in CC5Dll.dll through Autodesk AutoCAD can force an Out-of-Bounds Read vulnerability. A malicious actor can leverage this vulnerability to cause a cras… |
CWE-125
Out-of-bounds Read |
CVE-2024-9827 | 2024-11-2 01:17 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
| 311058 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted 3DM file when parsed in atf_api.dll through Autodesk AutoCAD can force a Use-After-Free vulnerability. A malicious actor can leverage this vulnerability to cause a crash, write … |
CWE-416
Use After Free |
CVE-2024-9826 | 2024-11-2 01:17 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
| 311059 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted SLDPRT file when parsed in odxsw_dll.dll through Autodesk AutoCAD can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to cause a cras… |
CWE-787
Out-of-bounds Write |
CVE-2024-8600 | 2024-11-2 01:17 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |
| 311060 | 7.8 |
HIGH
Local |
autodesk |
autocad autocad_advance_steel autocad_architecture autocad_civil_3d autocad_electrical autocad_mechanical autocad_mep autocad_plant_3d |
A maliciously crafted STP file when parsed in ACTranslators.exe through Autodesk AutoCAD can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to cause a cras… |
CWE-787
Out-of-bounds Write |
CVE-2024-8599 | 2024-11-2 01:17 | 2024-10-30 | Show | GitHub Exploit DB Packet Storm |