|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 30, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 228311 | 5 | 警告 | telepark | - | telepark.wiki における認可を回避される脆弱性 |
CWE-287
不適切な認証 |
CVE-2009-4089 | 2012-12-20 19:28 | 2009-11-29 | Show | GitHub Exploit DB Packet Storm |
| 228312 | 6.8 | 警告 | telepark | - | telepark.wiki におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-4088 | 2012-12-20 19:28 | 2009-11-29 | Show | GitHub Exploit DB Packet Storm |
| 228313 | 4.3 | 警告 | telepark | - | telepark.wiki の index.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4087 | 2012-12-20 19:28 | 2009-11-29 | Show | GitHub Exploit DB Packet Storm |
| 228314 | 4.3 | 警告 | puntolatinoclub | - | Drupal 用の Gallery Assist モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4064 | 2012-12-20 19:28 | 2009-11-18 | Show | GitHub Exploit DB Packet Storm |
| 228315 | 4.3 | 警告 | yuriy babenko | - | Drupal 用の Agreement モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4061 | 2012-12-20 19:28 | 2009-11-18 | Show | GitHub Exploit DB Packet Storm |
| 228316 | 7.5 | 危険 | telebidauctionscript | - | Telebid Auction Script の allauctions.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4058 | 2012-12-20 19:28 | 2009-11-23 | Show | GitHub Exploit DB Packet Storm |
| 228317 | 7.5 | 危険 | PowerDNS | - | PowerDNS Recursor における DNS データを偽装される脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-4010 | 2012-12-20 19:28 | 2010-01-6 | Show | GitHub Exploit DB Packet Storm |
| 228318 | 10 | 危険 | PowerDNS | - | PowerDNS Recursor におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-4009 | 2012-12-20 19:28 | 2010-01-6 | Show | GitHub Exploit DB Packet Storm |
| 228319 | 9.3 | 危険 | XnSoft | - | XnView における整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2009-4001 | 2012-12-20 19:28 | 2010-03-15 | Show | GitHub Exploit DB Packet Storm |
| 228320 | 5 | 警告 | phpMyBackupPro | - | phpMyBackupPro の get_file.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-4050 | 2012-12-20 19:28 | 2009-11-23 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 31, 2026, 4:16 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 216111 | 9.8 |
CRITICAL
Network |
qualcomm |
mdm9650 sdm630 ipq4019 qca6574au qca6584au apq8096au msm8996au ipq8064 qca9980 qca9558 qca9880 qca9886 qca6574 qca6564 sd835 sd845 ipq8074 qcn5502 | Out of bound access in WLAN driver due to lack of validation of array length before copying into array in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics… |
CWE-787 CWE-120 Out-of-bounds Write Classic Buffer Overflow |
CVE-2020-11225 | 2024-11-21 13:57 | 2021-01-21 | Show | GitHub Exploit DB Packet Storm |
| 216112 | 7.8 |
HIGH
Local |
qualcomm |
qca6390 qcm4290 qcs4290 sdx55m sm4125 sm7250p sd660 pm3003a pm4125 pm6125 pm6150a pm6150l pm6350 pm660 pm660a pm660l pm7150a pm7150l pm7250 pm… |
A possible double free or invalid memory access in audio driver while reading Speaker Protection parameters in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile |
CWE-415
Double Free |
CVE-2020-11217 | 2024-11-21 13:57 | 2021-01-21 | Show | GitHub Exploit DB Packet Storm |
| 216113 | 9.8 |
CRITICAL
Network |
qualcomm |
mdm9206 mdm9650 msm8909w sdx20 sdm630 qca6174a qca6574au qca9377 qca9379 msm8937 apq8096au msm8996au msm8917 qca6574 qca6564 sd210 sd205 sd450 sd… |
Buffer over read can happen in video driver when playing clip with atomsize having value UINT32_MAX in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdrago… |
CWE-125 CWE-190 Out-of-bounds Read Integer Overflow or Wraparound |
CVE-2020-11216 | 2024-11-21 13:57 | 2021-01-21 | Show | GitHub Exploit DB Packet Storm |
| 216114 | 7.8 |
HIGH
Local |
qualcomm |
ipq4019 qca6574au qca6584au ipq8064 qca9980 qca9880 qca9886 qca6574 ipq8074 qca8081 qcn7605 sdx55 sa6155p qca6390 ipq6018 qcn7606 sa8155p sa6145p | Out of bound issue in WLAN driver while processing vdev responses from firmware due to lack of validation of data received from firmware in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consum… |
CWE-787
Out-of-bounds Write |
CVE-2020-11185 | 2024-11-21 13:57 | 2021-01-21 | Show | GitHub Exploit DB Packet Storm |
| 216115 | 9.1 |
CRITICAL
Network |
qualcomm |
sdm630 qca6574au qca6584au ipq8064 qca9980 qca6574 sd845 sd850 ipq8074 qca8081 qcs605 sd855 qcs405 qcn7605 sdx55 sa6155p qca6390 ipq6018 sa415m | An out of bounds read can happen when processing VSA attribute due to improper minimum required length check in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Elect… |
CWE-125
Out-of-bounds Read |
CVE-2020-11215 | 2024-11-21 13:57 | 2021-01-21 | Show | GitHub Exploit DB Packet Storm |
| 216116 | 6.7 |
MEDIUM
Local |
qualcomm |
mdm9206 mdm9650 msm8909w mdm9655 sdx20 sdm630 qca6174a qca6574au qca9377 qca9379 msm8937 apq8096au msm8996au msm8917 sd450 sd835 sd820 apq8017 ap… |
A process can potentially cause a buffer overflow in the display service allowing privilege escalation by executing code as that service in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consum… |
CWE-120
Classic Buffer Overflow |
CVE-2020-11183 | 2024-11-21 13:57 | 2021-01-21 | Show | GitHub Exploit DB Packet Storm |
| 216117 | 7.5 |
HIGH
Network |
qualcomm |
mdm9206 qca6574au qca6584au qca9377 qca6574 ipq8074 qca8081 sd855 qcs405 qcn7605 sdx55 sa6155p qca6390 ipq6018 sa415m sa6155 qcn7606 qcs610 sa515… |
Buffer over-read while processing NDL attribute if attribute length is larger than expected and then FW is treating it as more number of immutable schedules in Snapdragon Auto, Snapdragon Compute, Sn… |
CWE-125
Out-of-bounds Read |
CVE-2020-11214 | 2024-11-21 13:57 | 2021-01-21 | Show | GitHub Exploit DB Packet Storm |
| 216118 | 7.8 |
HIGH
Local |
qualcomm |
pm3003a_firmware pm8009_firmware pm8150a_firmware pm8150b_firmware pm8150c_firmware pm8150l_firmware pm8250_firmware pmk8002_firmware pmr525_firmware pmx55_firmware qbt2… |
Out of bound access issue while handling cvp process control command due to improper validation of buffer pointer received from HLOS in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consume… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2020-11181 | 2024-11-21 13:57 | 2021-01-21 | Show | GitHub Exploit DB Packet Storm |
| 216119 | 9.8 |
CRITICAL
Network |
qualcomm |
mdm9206 mdm9607 mdm9650 msm8909w mdm9655 mdm9615 mdm9640 mdm9645 sdx20 sdm630 qca4531 qca6174a qca6574au qca6584 qca6584au qca9377 qca9378 qca9379 | Out of bound reads might occur in while processing Service descriptor due to improper validation of length of fields in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consum… |
CWE-125
Out-of-bounds Read |
CVE-2020-11213 | 2024-11-21 13:57 | 2021-01-21 | Show | GitHub Exploit DB Packet Storm |
| 216120 | 9.8 |
CRITICAL
Network |
qualcomm |
mdm9206 mdm9607 mdm9650 mdm9655 mdm9615 mdm9640 mdm9645 msm8976 sdm630 sdx20 qca6584au qca6584 qca6574au qca6174a qca4531 qca9379 qca9378 qca9377 | Out of bounds reads while parsing NAN beacons attributes and OUIs due to improper length of field check in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronic… |
CWE-125
Out-of-bounds Read |
CVE-2020-11212 | 2024-11-21 13:57 | 2021-01-21 | Show | GitHub Exploit DB Packet Storm |