|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 22, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 228241 | 9.3 | 危険 | sonicspot | - | Sonic Spot Audioactive Player におけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-1815 | 2012-12-20 19:10 | 2009-05-29 | Show | GitHub Exploit DB Packet Storm |
| 228242 | 7.5 | 危険 | submitterscript | - | Submitter Script の admin/index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-1813 | 2012-12-20 19:10 | 2009-05-29 | Show | GitHub Exploit DB Packet Storm |
| 228243 | 7.5 | 危険 | videoscript | - | VideoScript.us YouTube Video Script の admin/index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-1804 | 2012-12-20 19:10 | 2009-05-28 | Show | GitHub Exploit DB Packet Storm |
| 228244 | 6.8 | 警告 | sebastian-thiele | - | ST-Gallery の st_admin/gallery_output.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-1799 | 2012-12-20 19:10 | 2009-05-28 | Show | GitHub Exploit DB Packet Storm |
| 228245 | 4.3 | 警告 | サン・マイクロシステムズ | - | Sun Java System Portal Server におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-1796 | 2012-12-20 19:10 | 2009-05-22 | Show | GitHub Exploit DB Packet Storm |
| 228246 | 9.3 | 危険 | stonetrip | - | StoneTrip Ston3D StandalonePlayer および WebPlayer の system.openURL 関数における任意のコマンドを実行される脆弱性 |
CWE-78
OSコマンド・インジェクション |
CVE-2009-1792 | 2012-12-20 19:10 | 2009-05-29 | Show | GitHub Exploit DB Packet Storm |
| 228247 | 7.5 | 危険 | phpdirsubmit | - | PHP Dir Submit における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-1787 | 2012-12-20 19:10 | 2009-05-26 | Show | GitHub Exploit DB Packet Storm |
| 228248 | 4.3 | 警告 | ulteo | - | Ulteo Open Virtual Desktop におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-1785 | 2012-12-20 19:10 | 2009-05-22 | Show | GitHub Exploit DB Packet Storm |
| 228249 | 6.8 | 警告 | roboform | - | Frax.dk Php Recommend の admin.php における phpre_config.php へ任意の PHP コードを挿入される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-1781 | 2012-12-20 19:10 | 2009-05-22 | Show | GitHub Exploit DB Packet Storm |
| 228250 | 7.5 | 危険 | roboform | - | Frax.dk Php Recommend の admin.php における管理者権限を取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-1780 | 2012-12-20 19:10 | 2009-05-22 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 22, 2026, 4:08 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 221051 | 7.3 |
HIGH
Local |
android | In updatePermissions of PermissionManagerService.java, it may be possible for a malicious app to obtain a custom permission from another app due to a permission bypass. This could lead to local escal… |
CWE-276
Incorrect Default Permissions |
CVE-2019-2200 | 2024-11-21 13:40 | 2020-02-14 | Show | GitHub Exploit DB Packet Storm | |
| 221052 | 7.8 |
HIGH
Local |
qualcomm |
mdm9205_firmware qcs404_firmware qcs605_firmware sda845_firmware sdm670_firmware sdm710_firmware sdm845_firmware sdm850_firmware sm8150_firmware sxr1130_firmware sxr2130… |
Locked regions may be modified through other interfaces in secure boot loader image due to improper access control. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consume… |
NVD-CWE-Other
|
CVE-2019-2267 | 2024-11-21 13:40 | 2020-01-21 | Show | GitHub Exploit DB Packet Storm |
| 221053 | 7.8 |
HIGH
Local |
qualcomm |
ipq4019_firmware ipq8064_firmware ipq8074_firmware mdm9607_firmware msm8917_firmware msm8920_firmware msm8937_firmware msm8940_firmware qcn7605_firmware qcs405_firmware … |
Integer overflow to buffer overflow due to lack of validation of event arguments received from firmware. in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Sna… |
CWE-20 CWE-787 CWE-190 Improper Input Validation Out-of-bounds Write Integer Overflow or Wraparound |
CVE-2019-2304 | 2024-11-21 13:40 | 2019-12-18 | Show | GitHub Exploit DB Packet Storm |
| 221054 | 7.8 |
HIGH
Local |
qualcomm |
apq8017_firmware apq8053_firmware apq8098_firmware ipq8074_firmware mdm9150_firmware mdm9650_firmware mdm9655_firmware msm8917_firmware msm8920_firmware msm8937_firmware | Improper Access Control for RPU write access from secure processor in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial… |
NVD-CWE-noinfo
|
CVE-2019-2274 | 2024-11-21 13:40 | 2019-12-18 | Show | GitHub Exploit DB Packet Storm |
| 221055 | 9.8 |
CRITICAL
Network |
qualcomm |
apq8009_firmware apq8016_firmware apq8017_firmware apq8053_firmware apq8096_firmware apq8096au_firmware apq8098_firmware mdm9150_firmware mdm9607_firmware mdm9615_firmware<… |
Device memory may get corrupted because of buffer overflow/underflow. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industr… |
CWE-190
Integer Overflow or Wraparound |
CVE-2019-2242 | 2024-11-21 13:40 | 2019-12-18 | Show | GitHub Exploit DB Packet Storm |
| 221056 | 7.1 |
HIGH
Local |
qualcomm |
mdm9205_firmware msm8998_firmware qcs404_firmware qcs605_firmware sda660_firmware sda845_firmware sdm630_firmware sdm636_firmware sdm660_firmware sdm670_firmware sdm710_… |
Crafted image that has a valid signature from a non-QC entity can be loaded which can read/write memory that belongs to the secure world in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivit… |
NVD-CWE-noinfo
|
CVE-2019-2338 | 2024-11-21 13:40 | 2019-12-12 | Show | GitHub Exploit DB Packet Storm |
| 221057 | 7.5 |
HIGH
Network |
qualcomm |
apq8053_firmware apq8096au_firmware apq8098_firmware mdm9150_firmware mdm9205_firmware mdm9206_firmware mdm9640_firmware mdm9650_firmware mdm9655_firmware msm8905_firmware<… |
While Skipping unknown IES, EMM is reading the buffer even if the no of bytes to read are more than message length which may cause device to shutdown in Snapdragon Auto, Snapdragon Compute, Snapdrago… |
CWE-125
Out-of-bounds Read |
CVE-2019-2337 | 2024-11-21 13:40 | 2019-12-12 | Show | GitHub Exploit DB Packet Storm |
| 221058 | 7.8 |
HIGH
Local |
qualcomm |
apq8009_firmware apq8017_firmware apq8053_firmware apq8096_firmware apq8096au_firmware apq8098_firmware ipq4019_firmware ipq8074_firmware mdm9150_firmware mdm9205_firmware<… |
Incorrect length used while validating the qsee log buffer sent from HLOS which could then lead to remap conflict in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer … |
CWE-120
Classic Buffer Overflow |
CVE-2019-2321 | 2024-11-21 13:40 | 2019-12-12 | Show | GitHub Exploit DB Packet Storm |
| 221059 | 9.8 |
CRITICAL
Network |
qualcomm |
apq8009_firmware apq8017_firmware apq8053_firmware apq8096au_firmware apq8098_firmware mdm9150_firmware mdm9205_firmware mdm9206_firmware mdm9607_firmware mdm9615_firmware<… |
Possible out of bounds write in a MT SMS/SS scenario due to improper validation of array index in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon I… |
CWE-787 CWE-129 Out-of-bounds Write Improper Validation of Array Index |
CVE-2019-2320 | 2024-11-21 13:40 | 2019-12-12 | Show | GitHub Exploit DB Packet Storm |
| 221060 | 7.8 |
HIGH
Local |
qualcomm |
mdm9205_firmware qcs404_firmware qcs605_firmware sda845_firmware sdm670_firmware sdm710_firmware sdm845_firmware sdm850_firmware sm6150_firmware sm7150_firmware sm8150_f… |
HLOS could corrupt CPZ page table memory for S1 managed VMs in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Sna… |
CWE-787
Out-of-bounds Write |
CVE-2019-2319 | 2024-11-21 13:40 | 2019-12-12 | Show | GitHub Exploit DB Packet Storm |