|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 31, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 228671 | 7.5 | 危険 | yasinkaplan | - | TekRADIUS における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-2359 | 2012-12-20 19:10 | 2009-07-7 | Show | GitHub Exploit DB Packet Storm |
| 228672 | 4.6 | 警告 | yasinkaplan | - | TekRADIUS における難読化したデータベース資格情報を取得される脆弱性 |
CWE-255
証明書・パスワード管理 |
CVE-2009-2358 | 2012-12-20 19:10 | 2009-07-7 | Show | GitHub Exploit DB Packet Storm |
| 228673 | 10 | 危険 | yasinkaplan | - | TekRADIUS のデフォルト設定におけるデータベースへのアクセス権限を取得される脆弱性 |
CWE-16
環境設定 |
CVE-2009-2357 | 2012-12-20 19:10 | 2009-07-7 | Show | GitHub Exploit DB Packet Storm |
| 228674 | 4 | 警告 | dan cahill | - | NullLogic Groupware のフォーラムモジュールにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-189
数値処理の問題 |
CVE-2009-2355 | 2012-12-20 19:10 | 2009-07-7 | Show | GitHub Exploit DB Packet Storm |
| 228675 | 9 | 危険 | Sourcefire | - | Sourcefire DC および 3D Sensor の Web ベースの管理インターフェースにおける権限を取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-2344 | 2012-12-20 19:10 | 2009-07-7 | Show | GitHub Exploit DB Packet Storm |
| 228676 | 4.3 | 警告 | Zoph | - | Zoph の people.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-2343 | 2012-12-20 19:10 | 2009-07-7 | Show | GitHub Exploit DB Packet Storm |
| 228677 | 7.5 | 危険 | shalwan | - | Opial の albumdetail.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-2341 | 2012-12-20 19:10 | 2009-07-7 | Show | GitHub Exploit DB Packet Storm |
| 228678 | 7.5 | 危険 | rentventory | - | Rentventory の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-2339 | 2012-12-20 19:10 | 2009-07-7 | Show | GitHub Exploit DB Packet Storm |
| 228679 | 6.8 | 警告 | w3bcms | - | w3b|cms Gaestebuch Guestbook Module の includes/module/book/index.inc.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-2337 | 2012-12-20 19:10 | 2009-07-7 | Show | GitHub Exploit DB Packet Storm |
| 228680 | 5 | 警告 | WordPress.org | - | WordPress および WordPress MU における有効なユーザ名を列挙される脆弱性 |
CWE-16
環境設定 |
CVE-2009-2336 | 2012-12-20 19:10 | 2009-07-10 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 31, 2026, 4:16 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 216011 | 7.5 |
HIGH
Network |
qualcomm |
apq8009_firmware apq8017_firmware apq8053_firmware apq8064au_firmware apq8096au_firmware aqt1000_firmware ar7420_firmware ar8031_firmware ar8035_firmware ar9380_firmware | Improper authentication of un-encrypted plaintext Wi-Fi frames in an encrypted network can lead to information disclosure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon C… |
CWE-287
Improper Authentication |
CVE-2020-11301 | 2024-11-21 13:57 | 2021-09-8 | Show | GitHub Exploit DB Packet Storm |
| 216012 | 9.8 |
CRITICAL
Network |
qualcomm |
apq8009w_firmware apq8017_firmware apq8053_firmware apq8064au_firmware apq8096au_firmware aqt1000_firmware msm8909w_firmware msm8917_firmware msm8937_firmware msm8953_firmw… |
Buffer overflow in modem due to improper array index check before copying into it in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, … |
CWE-129
Improper Validation of Array Index |
CVE-2020-11307 | 2024-11-21 13:57 | 2021-07-13 | Show | GitHub Exploit DB Packet Storm |
| 216013 | 7.5 |
HIGH
Network |
qualcomm |
apq8009_firmware apq8096au_firmware aqt1000_firmware ar8031_firmware ar8035_firmware ar9380_firmware csr8811_firmware csra6620_firmware csra6640_firmware csrb31024_firmware… |
Out of bound read will happen if EAPOL Key length is less than expected while processing NAN shared key descriptor attribute in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdrago… |
CWE-125
Out-of-bounds Read |
CVE-2020-11241 | 2024-11-21 13:57 | 2021-06-9 | Show | GitHub Exploit DB Packet Storm |
| 216014 | 7.8 |
HIGH
Local |
qualcomm |
apq8009_firmware apq8009w_firmware apq8017_firmware apq8037_firmware apq8053_firmware apq8064au_firmware apq8076_firmware apq8096au_firmware aqt1000_firmware ar8031_firmwar… |
Use after free issue when importing a DMA buffer by using the CPU address of the buffer due to attachment is not cleaned up properly in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, S… |
CWE-416
Use After Free |
CVE-2020-11239 | 2024-11-21 13:57 | 2021-06-9 | Show | GitHub Exploit DB Packet Storm |
| 216015 | 7.5 |
HIGH
Network |
qualcomm |
aqt1000_firmware ar8031_firmware ar8035_firmware ar8151_firmware ar9380_firmware csr8811_firmware csra6620_firmware csra6640_firmware csrb31024_firmware ipq4018_firmware | Possible Buffer over-read in ARP/NS parsing due to lack of check of packet length received in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivit… |
CWE-125
Out-of-bounds Read |
CVE-2020-11238 | 2024-11-21 13:57 | 2021-06-9 | Show | GitHub Exploit DB Packet Storm |
| 216016 | 7.8 |
HIGH
Local |
qualcomm |
aqt1000_firmware ar8035_firmware qca6390_firmware qca6391_firmware qca6420_firmware qca6421_firmware qca6426_firmware qca6430_firmware qca6431_firmware qca6436_firmware … |
Possible integer overflow in RPMB counter due to lack of length check on user provided data in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Indust… |
CWE-190
Integer Overflow or Wraparound |
CVE-2020-11306 | 2024-11-21 13:57 | 2021-06-9 | Show | GitHub Exploit DB Packet Storm |
| 216017 | 7.0 |
HIGH
Local |
qualcomm |
aqt1000_firmware ar8031_firmware ar8035_firmware csra6620_firmware csra6640_firmware mdm9205_firmware mdm9206_firmware mdm9628_firmware qca4004_firmware qca6390_firmware | While waiting for a response to a callback or listener request, non-secure clients can change permissions to shared memory buffers used by HLOS Invoke Call to secure kernel in Snapdragon Auto, Snapdr… |
CWE-367
Time-of-check Time-of-use (TOCTOU) Race Condition |
CVE-2020-11298 | 2024-11-21 13:57 | 2021-06-9 | Show | GitHub Exploit DB Packet Storm |
| 216018 | 7.8 |
HIGH
Local |
qualcomm |
apq8009_firmware apq8017_firmware apq8053_firmware apq8064au_firmware apq8076_firmware apq8084_firmware apq8092_firmware apq8094_firmware apq8096au_firmware aqt1000_firmwar… |
Buffer overflow might occur while parsing unified command due to lack of check of input data received in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics … |
CWE-190
Integer Overflow or Wraparound |
CVE-2020-11235 | 2024-11-21 13:57 | 2021-06-9 | Show | GitHub Exploit DB Packet Storm |
| 216019 | 7.1 |
HIGH
Local |
qualcomm |
apq8009_firmware apq8096au_firmware aqt1000_firmware ar8031_firmware ar8035_firmware csra6620_firmware csra6640_firmware csrb31024_firmware fsm10055_firmware fsm10056_firmw… |
Possible out of bound read in DRM due to improper buffer length check. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon … |
CWE-125
Out-of-bounds Read |
CVE-2020-11304 | 2024-11-21 13:57 | 2021-06-9 | Show | GitHub Exploit DB Packet Storm |
| 216020 | 9.8 |
CRITICAL
Network |
qualcomm |
apq8017_firmware apq8053_firmware aqt1000_firmware csrb31024_firmware msm8917_firmware msm8920_firmware msm8940_firmware msm8953_firmware msm8976_firmware msm8976sg_firmwar… |
Possible buffer overflow while updating ikev2 parameters for delete payloads received during informational exchange due to lack of check of input validation for certain parameters received from the e… |
CWE-129
Improper Validation of Array Index |
CVE-2020-11291 | 2024-11-21 13:57 | 2021-06-9 | Show | GitHub Exploit DB Packet Storm |