|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 24, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 227911 | 6.8 | 警告 | todor lazarov | - | T-HTB Manager の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-3494 | 2012-12-20 19:28 | 2009-09-30 | Show | GitHub Exploit DB Packet Storm |
| 227912 | 4.3 | 警告 | zenas | - | Zenas PaoBacheca Guestbook におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3493 | 2012-12-20 19:28 | 2009-09-30 | Show | GitHub Exploit DB Packet Storm |
| 227913 | 2.1 | 注意 | ron jerome | - | Drupal 用の Bibliography モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3488 | 2012-12-20 19:28 | 2009-09-30 | Show | GitHub Exploit DB Packet Storm |
| 227914 | 6.8 | 警告 | TrustPort | - | TrustPort Antivirus などにおける権限を取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-3482 | 2012-12-20 19:28 | 2009-09-30 | Show | GitHub Exploit DB Packet Storm |
| 227915 | 5 | 警告 | radactive | - | RADactive I-Load の WebCoreModule.ashx における重要な情報を取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2009-3452 | 2012-12-20 19:28 | 2009-09-29 | Show | GitHub Exploit DB Packet Storm |
| 227916 | 5 | 警告 | radactive | - | RADactive I-Load の WebCoreModule.ashx におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-3451 | 2012-12-20 19:28 | 2009-09-29 | Show | GitHub Exploit DB Packet Storm |
| 227917 | 4.7 | 警告 | reductivelabs | - | puppet の puppetmasterd における制限ファイルにアクセスされる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-3564 | 2012-12-20 19:28 | 2008-12-8 | Show | GitHub Exploit DB Packet Storm |
| 227918 | 4.3 | 警告 | radactive | - | RADactive I-Load の WebCoreModule.ashx におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3450 | 2012-12-20 19:28 | 2009-09-29 | Show | GitHub Exploit DB Packet Storm |
| 227919 | 6.8 | 警告 | radactive | - | RADactive I-Load における任意のコードを実行される脆弱性 |
CWE-362
競合状態 |
CVE-2009-3447 | 2012-12-20 19:28 | 2009-09-29 | Show | GitHub Exploit DB Packet Storm |
| 227920 | 7.5 | 危険 | rick estrada | - | Joomla! 用の MyRemote Video Gallery コンポーネントにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-3446 | 2012-12-20 19:28 | 2009-09-28 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 24, 2026, 4:05 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 195411 | 9.8 |
CRITICAL
Network |
zohocorp | manageengine_log360 | ManageEngine Log360 Builds < 5235 are affected by an improper access control vulnerability allowing database configuration overwrite. An unauthenticated remote attacker can send a specially crafted m… |
CWE-306
Missing Authentication for Critical Function |
CVE-2021-20136 | 2024-11-21 14:45 | 2021-11-2 | Show | GitHub Exploit DB Packet Storm |
| 195412 | 6.5 |
MEDIUM
Network |
apple |
watchos macos |
A logic issue was addressed with improved state management. This issue is fixed in watchOS 7.6, macOS Big Sur 11.5. Visiting a maliciously crafted webpage may lead to a system denial of service. |
NVD-CWE-noinfo
|
CVE-2021-1821 | 2024-11-21 14:45 | 2021-10-29 | Show | GitHub Exploit DB Packet Storm |
| 195413 | 8.8 |
HIGH
Network |
commscope | arris_surfboard_sb8200_firmware | The administration web interface for the Arris Surfboard SB8200 lacks any protections against cross-site request forgery attacks. This means that an attacker could make configuration changes (such as… |
CWE-352
Origin Validation Error |
CVE-2021-20120 | 2024-11-21 14:45 | 2021-10-22 | Show | GitHub Exploit DB Packet Storm |
| 195414 | 7.1 |
HIGH
Local |
qualcomm |
apq8017_firmware apq8053_firmware apq8064au_firmware apq8096au_firmware aqt1000_firmware msm8917_firmware msm8953_firmware msm8996au_firmware qca6310_firmware qca6320_firmw… |
Possible buffer over read due to lack of data length check in QVR Service configuration in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial… |
CWE-125
Out-of-bounds Read |
CVE-2021-1985 | 2024-11-21 14:45 | 2021-10-20 | Show | GitHub Exploit DB Packet Storm |
| 195415 | 7.8 |
HIGH
Local |
qualcomm |
apq8017_firmware apq8053_firmware apq8064au_firmware apq8096au_firmware aqt1000_firmware msm8917_firmware msm8953_firmware msm8996au_firmware qca6310_firmware qca6320_firmw… |
Possible buffer overflow due to improper validation of index value while processing the plugin block in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdrag… |
CWE-120
Classic Buffer Overflow |
CVE-2021-1984 | 2024-11-21 14:45 | 2021-10-20 | Show | GitHub Exploit DB Packet Storm |
| 195416 | 7.8 |
HIGH
Local |
qualcomm |
apq8017_firmware apq8053_firmware apq8064au_firmware apq8096au_firmware aqt1000_firmware msm8917_firmware msm8953_firmware msm8996au_firmware qca6310_firmware qca6320_firmw… |
Possible buffer overflow due to improper handling of negative data length while processing write request in VR service in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Cons… |
CWE-120
Classic Buffer Overflow |
CVE-2021-1983 | 2024-11-21 14:45 | 2021-10-20 | Show | GitHub Exploit DB Packet Storm |
| 195417 | 9.1 |
CRITICAL
Network |
qualcomm |
apq8009_firmware apq8017_firmware apq8053_firmware apq8064au_firmware apq8096au_firmware ar8031_firmware ar8035_firmware csra6620_firmware csra6640_firmware csrb31024_firmw… |
Possible buffer over read due to improper validation of frame length while processing AEAD decryption during ASSOC response in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon… |
CWE-125
Out-of-bounds Read |
CVE-2021-1977 | 2024-11-21 14:45 | 2021-10-20 | Show | GitHub Exploit DB Packet Storm |
| 195418 | 9.1 |
CRITICAL
Network |
qualcomm |
apq8053_firmware apq8064au_firmware apq8096au_firmware aqt1000_firmware ar8031_firmware ar8035_firmware ar9380_firmware csr8811_firmware csra6620_firmware csra6640_firmware… |
Possible buffer over read due to lack of length check while parsing beacon IE response in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, S… |
CWE-125
Out-of-bounds Read |
CVE-2021-1980 | 2024-11-21 14:45 | 2021-10-20 | Show | GitHub Exploit DB Packet Storm |
| 195419 | 5.5 |
MEDIUM
Local |
qualcomm |
aqt1000_firmware ar8031_firmware ar8035_firmware csra6620_firmware csra6640_firmware fsm10055_firmware fsm10056_firmware mdm9150_firmware qca6391_firmware qca6420_firmware<… |
Improper validation of kernel buffer address while copying information back to user buffer can lead to kernel memory information exposure to user space in Snapdragon Auto, Snapdragon Compute, Snapdra… |
CWE-20
Improper Input Validation |
CVE-2021-1969 | 2024-11-21 14:45 | 2021-10-20 | Show | GitHub Exploit DB Packet Storm |
| 195420 | 5.5 |
MEDIUM
Local |
qualcomm |
aqt1000_firmware ar8031_firmware ar8035_firmware csra6620_firmware csra6640_firmware fsm10055_firmware fsm10056_firmware mdm9150_firmware qca6391_firmware qca6420_firmware<… |
Improper validation of kernel buffer address while copying information back to user buffer can lead to kernel memory information exposure to user space in Snapdragon Auto, Snapdragon Compute, Snapdra… |
CWE-20
Improper Input Validation |
CVE-2021-1968 | 2024-11-21 14:45 | 2021-10-20 | Show | GitHub Exploit DB Packet Storm |