Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228591 7.5 危険 php-paid4mail - PHP Paid 4 Mail Script の paidbanner.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2774 2012-12-20 19:10 2009-08-14 Show GitHub Exploit DB Packet Storm
228592 7.5 危険 shop-020 - PHP Paid 4 Mail Script の home.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-2773 2012-12-20 19:10 2009-08-14 Show GitHub Exploit DB Packet Storm
228593 4.3 警告 realtysoft - PG Roommate Finder Solution におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2772 2012-12-20 19:10 2009-08-14 Show GitHub Exploit DB Packet Storm
228594 7.5 危険 powerupload - PowerUpload における管理者アクセス権を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-2770 2012-12-20 19:10 2009-08-14 Show GitHub Exploit DB Packet Storm
228595 6.8 警告 ultrize - Ultrize TimeSheet の include/timesheet.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-2769 2012-12-20 19:10 2009-08-14 Show GitHub Exploit DB Packet Storm
228596 7.5 危険 WordPress.org - WordPress の wp-login.php におけるデータベースの最初のユーザパスワードを強制的にリセットされる脆弱性 CWE-255
証明書・パスワード管理
CVE-2009-2762 2012-12-20 19:10 2009-08-12 Show GitHub Exploit DB Packet Storm
228597 5.5 警告 Roundup - Roundup の cgi/actions.py におけるクラス内の任意の項目を変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-2737 2012-12-20 19:10 2009-08-11 Show GitHub Exploit DB Packet Storm
228598 6.5 警告 sun-jester - sun-jester OpenNews の admin.php における任意の PHP コードを挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2009-2736 2012-12-20 19:10 2009-08-11 Show GitHub Exploit DB Packet Storm
228599 6.8 警告 sun-jester - sun-jester OpenNews の admin.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2735 2012-12-20 19:10 2009-08-11 Show GitHub Exploit DB Packet Storm
228600 5 警告 サン・マイクロシステムズ - Sun Java SE の Swing 実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-2720 2012-12-20 19:10 2009-08-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 31, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
216051 9.1 CRITICAL
Network
qualcomm apq8009_firmware
apq8009w_firmware
apq8017_firmware
apq8037_firmware
apq8053_firmware
apq8084_firmware
apq8096au_firmware
aqt1000_firmware
ar6003_firmware
ar8035_firmware
Out of bound read occurs while processing crafted SDP due to lack of check of null string in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity… CWE-125
Out-of-bounds Read
CVE-2020-11191 2024-11-21 13:57 2021-04-7 Show GitHub Exploit DB Packet Storm
216052 7.5 HIGH
Network
qualcomm apq8009_firmware
apq8017_firmware
apq8037_firmware
apq8053_firmware
aqt1000_firmware
csrb31024_firmware
mdm8207_firmware
mdm9205_firmware
mdm9206_firmware
mdm9207_firmware<…
Denial of service while processing RTCP packets containing multiple SDES reports due to memory for last SDES packet is freed and rest of the memory is leaked in Snapdragon Auto, Snapdragon Compute, S… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2020-11255 2024-11-21 13:57 2021-04-7 Show GitHub Exploit DB Packet Storm
216053 5.5 MEDIUM
Local
qualcomm aqt1000_firmware
ar8031_firmware
ar8035_firmware
csr8811_firmware
csra6620_firmware
csra6640_firmware
csrb31024_firmware
fsm10055_firmware
fsm10056_firmware
ipq6000_firmwar…
Trustzone initialization code will disable xPU`s when memory dumps are enabled and lead to information disclosure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer … CWE-125
Out-of-bounds Read
CVE-2020-11252 2024-11-21 13:57 2021-04-7 Show GitHub Exploit DB Packet Storm
216054 9.1 CRITICAL
Network
qualcomm apq8009_firmware
apq8009w_firmware
apq8017_firmware
apq8037_firmware
apq8053_firmware
apq8096au_firmware
aqt1000_firmware
ar6003_firmware
ar8151_firmware
csr6030_firmware
Out-of-bounds read vulnerability while accessing DTMF payload due to lack of check of buffer length before copying in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer… CWE-125
Out-of-bounds Read
CVE-2020-11251 2024-11-21 13:57 2021-04-7 Show GitHub Exploit DB Packet Storm
216055 9.1 CRITICAL
Network
qualcomm apq8017_firmware
apq8037_firmware
apq8053_firmware
aqt1000_firmware
msm8917_firmware
msm8920_firmware
msm8937_firmware
msm8940_firmware
msm8953_firmware
pm215_firmware
p…
Out of bound memory read while unpacking data due to lack of offset length check in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, S… CWE-125
Out-of-bounds Read
CVE-2020-11247 2024-11-21 13:57 2021-04-7 Show GitHub Exploit DB Packet Storm
216056 7.8 HIGH
Local
qualcomm apq8017_firmware
apq8037_firmware
apq8053_firmware
aqt1000_firmware
msm8917_firmware
msm8920_firmware
msm8937_firmware
msm8940_firmware
msm8953_firmware
pm215_firmware
p…
A double free condition can occur when the device moves to suspend mode during secure playback in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Ind… CWE-415
 Double Free
CVE-2020-11246 2024-11-21 13:57 2021-04-7 Show GitHub Exploit DB Packet Storm
216057 7.8 HIGH
Local
qualcomm aqt1000_firmware
ar8035_firmware
pm3003a_firmware
pm4125_firmware
pm4250_firmware
pm6125_firmware
pm6150_firmware
pm6150a_firmware
pm6150l_firmware
pm6350_firmware
pm640…
Unintended reads and writes by NS EL2 in access control driver due to lack of check of input validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapd… CWE-190
 Integer Overflow or Wraparound
CVE-2020-11245 2024-11-21 13:57 2021-04-7 Show GitHub Exploit DB Packet Storm
216058 7.8 HIGH
Local
qualcomm pm660_firmware
pm660a_firmware
pm660l_firmware
pm855a_firmware
pmm855au_firmware
qat3514_firmware
qat3522_firmware
qat3550_firmware
qca6564a_firmware
qca6564au_firmware
User could gain access to secure memory due to incorrect argument into address range validation api used in SDI to capture requested contents in Snapdragon Industrial IOT, Snapdragon Mobile NVD-CWE-Other
CVE-2020-11242 2024-11-21 13:57 2021-04-7 Show GitHub Exploit DB Packet Storm
216059 7.8 HIGH
Local
qualcomm csrb31024_firmware
pm3003a_firmware
pm456_firmware
pm6150_firmware
pm6150a_firmware
pm6150l_firmware
pm6250_firmware
pm6350_firmware
pm7150a_firmware
pm7150l_firmware
pm…
Memory crash when accessing histogram type KPI input received due to lack of check of histogram definition before accessing it in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdra… CWE-20
 Improper Input Validation 
CVE-2020-11237 2024-11-21 13:57 2021-04-7 Show GitHub Exploit DB Packet Storm
216060 8.8 HIGH
Local
qualcomm ar8035_firmware
pm4125_firmware
pm4250_firmware
pm6125_firmware
pm6150a_firmware
pm6150l_firmware
pm6350_firmware
pm7250b_firmware
pm8008_firmware
pmd9655_firmware
pmi63…
Possible memory corruption in RPM region due to improper XPU configuration in Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking CWE-787
 Out-of-bounds Write
CVE-2020-11210 2024-11-21 13:57 2021-04-7 Show GitHub Exploit DB Packet Storm