|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 22, 2026, 2 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 228201 | 7.5 | 危険 | phportal | - | phPortal の uye_paneli.php における管理者アクセス権を取得される脆弱性 |
CWE-287
不適切な認証 |
CVE-2009-2117 | 2012-12-20 19:10 | 2009-06-18 | Show | GitHub Exploit DB Packet Storm |
| 228202 | 4 | 警告 | Iconify.it | - | SkyBlueCanvas の admin.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-2116 | 2012-12-20 19:10 | 2009-06-18 | Show | GitHub Exploit DB Packet Storm |
| 228203 | 6.8 | 警告 | Iconify.it | - | SkyBlueCanvas の admin.php における重要な情報を取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2009-2115 | 2012-12-20 19:10 | 2009-06-18 | Show | GitHub Exploit DB Packet Storm |
| 228204 | 4.3 | 警告 | Iconify.it | - | SkyBlueCanvas の admin.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-2114 | 2012-12-20 19:10 | 2009-06-18 | Show | GitHub Exploit DB Packet Storm |
| 228205 | 4.3 | 警告 | webmedia explorer | - | webmex の index.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-2107 | 2012-12-20 19:10 | 2009-06-17 | Show | GitHub Exploit DB Packet Storm |
| 228206 | 7.5 | 危険 | projektseminar proservice wwu | - | TYPO3 用の Virtual civserv エクステンションにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-2106 | 2012-12-20 19:10 | 2009-06-17 | Show | GitHub Exploit DB Packet Storm |
| 228207 | 4.3 | 警告 | udo von eynern | - | TYPO3 用の Modern Guestbook / Commenting System エクステンションにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-2104 | 2012-12-20 19:10 | 2009-06-17 | Show | GitHub Exploit DB Packet Storm |
| 228208 | 7.5 | 危険 | steve grundell | - | TYPO3 用の fe_mp3player エクステンションにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-2103 | 2012-12-20 19:10 | 2009-06-17 | Show | GitHub Exploit DB Packet Storm |
| 228209 | 7.5 | 危険 | zokisoft | - | Zoki Soft Zoki Catalog の system/application/controllers/catalog.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-2097 | 2012-12-20 19:10 | 2009-06-17 | Show | GitHub Exploit DB Packet Storm |
| 228210 | 4.3 | 警告 | phpwebthings | - | phpWebThings の help.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-2081 | 2012-12-20 19:10 | 2009-06-16 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 22, 2026, 4:08 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 195361 | 6.5 |
MEDIUM
Adjacent |
qualcomm |
aqt1000_firmware ar8035_firmware csrb31024_firmware qca6175a_firmware qca6390_firmware qca6391_firmware qca6420_firmware qca6430_firmware qca6564a_firmware qca6564au_firmwa… |
Improper handling of ASB-U packet with L2CAP channel ID by slave host can lead to interference with piconet in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electr… |
NVD-CWE-Other
|
CVE-2021-1956 | 2024-11-21 14:45 | 2021-09-9 | Show | GitHub Exploit DB Packet Storm |
| 195362 | 7.8 |
HIGH
Local |
qualcomm |
aqt1000_firmware ar8031_firmware ar8035_firmware csra6620_firmware csra6640_firmware mdm9150_firmware mdm9205_firmware qca4004_firmware qca6390_firmware qca6391_firmware | Possible buffer over read occurs due to lack of length check of request buffer in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Sna… |
CWE-125
Out-of-bounds Read |
CVE-2021-1952 | 2024-11-21 14:45 | 2021-09-9 | Show | GitHub Exploit DB Packet Storm |
| 195363 | 9.8 |
CRITICAL
Network |
qualcomm |
apq8017_firmware apq8053_firmware aqt1000_firmware ar8035_firmware msm8917_firmware msm8920_firmware msm8940_firmware msm8953_firmware qca6174a_firmware qca6390_firmware | Null Pointer Dereference may occur due to improper validation while processing crafted SDP body in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon In… |
CWE-476
NULL Pointer Dereference |
CVE-2021-1946 | 2024-11-21 14:45 | 2021-09-9 | Show | GitHub Exploit DB Packet Storm |
| 195364 | 7.5 |
HIGH
Network |
qualcomm |
apq8053_firmware apq8064au_firmware apq8096au_firmware aqt1000_firmware ar8031_firmware ar8035_firmware ar9380_firmware csr8811_firmware csra6620_firmware csra6640_firmware… |
Possible out of bound read due to lack of length check of data while parsing the beacon or probe response in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electron… |
CWE-125
Out-of-bounds Read |
CVE-2021-1948 | 2024-11-21 14:45 | 2021-09-9 | Show | GitHub Exploit DB Packet Storm |
| 195365 | 7.8 |
HIGH
Local |
qualcomm |
apq8017_firmware apq8053_firmware aqt1000_firmware msm8917_firmware msm8953_firmware qca6310_firmware qca6320_firmware qca6390_firmware qca6391_firmware qca6420_firmware | Possible memory corruption due to improper check when application loader object is explicitly destructed while application is unloading in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity… |
CWE-415
Double Free |
CVE-2021-1934 | 2024-11-21 14:45 | 2021-09-9 | Show | GitHub Exploit DB Packet Storm |
| 195366 | 7.5 |
HIGH
Network |
qualcomm |
apq8064au_firmware apq8096au_firmware aqt1000_firmware ar8031_firmware ar8035_firmware ar9380_firmware csr8811_firmware csra6620_firmware csra6640_firmware csrb31024_firmwa… |
Possible buffer over read issue due to improper length check on WPA IE string sent by peer in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivit… |
CWE-125
Out-of-bounds Read |
CVE-2021-1941 | 2024-11-21 14:45 | 2021-09-9 | Show | GitHub Exploit DB Packet Storm |
| 195367 | 9.8 |
CRITICAL
Network |
qualcomm |
apq8017_firmware apq8053_firmware aqt1000_firmware csrb31024_firmware msm8917_firmware msm8920_firmware msm8940_firmware msm8953_firmware qca6174a_firmware qca6310_firmware… |
UE assertion is possible due to improper validation of invite message with SDP body in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT… |
CWE-129
Improper Validation of Array Index |
CVE-2021-1933 | 2024-11-21 14:45 | 2021-09-9 | Show | GitHub Exploit DB Packet Storm |
| 195368 | 5.5 |
MEDIUM
Local |
qualcomm |
apq8009_firmware apq8017_firmware apq8037_firmware apq8053_firmware apq8064au_firmware apq8096au_firmware aqt1000_firmware ar8031_firmware ar8035_firmware csra6620_firmware… |
Possible null pointer dereference due to lack of validation check for passed pointer during key import in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdr… |
CWE-476
NULL Pointer Dereference |
CVE-2021-1935 | 2024-11-21 14:45 | 2021-09-9 | Show | GitHub Exploit DB Packet Storm |
| 195369 | 7.8 |
HIGH
Local |
qualcomm |
apq8009_firmware apq8009w_firmware apq8016_firmware apq8017_firmware apq8037_firmware apq8052_firmware apq8053_firmware apq8056_firmware apq8062_firmware apq8064_firmware | Buffer overflow occurs in trusted applications due to lack of length check of parameters in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity,… |
CWE-120
Classic Buffer Overflow |
CVE-2021-1909 | 2024-11-21 14:45 | 2021-09-9 | Show | GitHub Exploit DB Packet Storm |
| 195370 | 7.8 |
HIGH
Local |
apple |
macos iphone_os tvos watchos ipados |
An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.3, iOS 14.5 and iPadOS 14.5, watchOS 7.4, tvOS 14.5. Processing a maliciously crafted image … |
CWE-125
Out-of-bounds Read |
CVE-2021-1885 | 2024-11-21 14:45 | 2021-09-9 | Show | GitHub Exploit DB Packet Storm |