|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 27, 2026, noon
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 229601 | 7.5 | 危険 | stash | - | Stash の admin/login.php における認証を回避される脆弱性 |
CWE-287
不適切な認証 |
CVE-2008-4081 | 2012-12-20 18:52 | 2008-09-15 | Show | GitHub Exploit DB Packet Storm |
| 229602 | 6.8 | 警告 | stash | - | Stash における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-4080 | 2012-12-20 18:52 | 2008-09-15 | Show | GitHub Exploit DB Packet Storm |
| 229603 | 7.5 | 危険 | zanfi solutions | - | Zanfi Autodealers CMS AutOnline の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-4074 | 2012-12-20 18:52 | 2008-09-15 | Show | GitHub Exploit DB Packet Storm |
| 229604 | 7.5 | 危険 | zanfi solutions | - | Zanfi Autodealers CMS AutOnline の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-4073 | 2012-12-20 18:52 | 2008-09-15 | Show | GitHub Exploit DB Packet Storm |
| 229605 | 7.5 | 危険 | phsdev | - | phsBlog の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-4072 | 2012-12-20 18:52 | 2008-09-15 | Show | GitHub Exploit DB Packet Storm |
| 229606 | 7.5 | 危険 | texmedia | - | Million Pixel Script の tops_top.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-4055 | 2012-12-20 18:52 | 2008-09-11 | Show | GitHub Exploit DB Packet Storm |
| 229607 | 4.6 | 警告 | トレンドマイクロ | - | Trend Micro NSC モジュールの Trend Micro Personal Firewall サービスにおけるアクセス制限を回避される脆弱性 |
CWE-287
不適切な認証 |
CVE-2008-3866 | 2012-12-20 18:52 | 2009-01-16 | Show | GitHub Exploit DB Packet Storm |
| 229608 | 10 | 危険 | トレンドマイクロ | - | Trend Micro NSC モジュールのファイアーウォールにおけるヒープベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2008-3865 | 2012-12-20 18:52 | 2009-01-16 | Show | GitHub Exploit DB Packet Storm |
| 229609 | 5 | 警告 | トレンドマイクロ | - | Trend Micro NSC モジュールのファイアーウォールサービスにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2008-3864 | 2012-12-20 18:52 | 2009-01-16 | Show | GitHub Exploit DB Packet Storm |
| 229610 | 4 | 警告 | softalk mail server | - | Softalk Mail Server の IMAP サーバにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2008-4041 | 2012-12-20 18:52 | 2008-09-11 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 27, 2026, 4:52 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 221821 | 7.8 |
HIGH
Local |
android | In startActivityMayWait of ActivityStarter.java, there is a possible incorrect Activity launch due to an incorrect permission check. This could lead to local escalation of privilege with no additiona… |
CWE-276
Incorrect Default Permissions |
CVE-2019-2173 | 2024-11-21 13:40 | 2019-10-12 | Show | GitHub Exploit DB Packet Storm | |
| 221822 | 7.8 |
HIGH
Local |
android | In the default privileges of NFC, there is a possible local bypass of user interaction requirements on package installation due to a default permission. This could lead to local escalation of privile… |
CWE-276
Incorrect Default Permissions |
CVE-2019-2114 | 2024-11-21 13:40 | 2019-10-12 | Show | GitHub Exploit DB Packet Storm | |
| 221823 | 5.5 |
MEDIUM
Local |
android | In ScreenRotationAnimation of ScreenRotationAnimation.java, there is a possible capture of a secure screen due to a missing permission check. This could lead to local information disclosure with no a… |
CWE-862
Missing Authorization |
CVE-2019-2110 | 2024-11-21 13:40 | 2019-10-12 | Show | GitHub Exploit DB Packet Storm | |
| 221824 | 7.8 |
HIGH
Local |
google debian canonical netapp huawei |
android debian_linux ubuntu_linux cloud_backup steelstore_cloud_integrated_storage service_processor data_availability_services solidfire hci_management_node solidfire_base… |
A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interaction is required to exploit this vulnerability, however exploitation does require… |
CWE-416
Use After Free |
CVE-2019-2215 | 2024-11-21 13:40 | 2019-10-12 | Show | GitHub Exploit DB Packet Storm |
| 221825 | 7.8 |
HIGH
Local |
qualcomm |
mdm9150_firmware mdm9206_firmware mdm9607_firmware mdm9640_firmware mdm9650_firmware msm8909w_firmware msm8996au_firmware qcs405_firmware qcs605_firmware qualcomm_215_firmw… |
Buffer overflow when the audio buffer size provided by user is larger than the maximum allowable audio buffer size. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industr… |
CWE-120
Classic Buffer Overflow |
CVE-2019-2341 | 2024-11-21 13:40 | 2019-10-1 | Show | GitHub Exploit DB Packet Storm |
| 221826 | 7.8 |
HIGH
Local |
qualcomm |
mdm9150_firmware mdm9607_firmware mdm9650_firmware msm8909w_firmware msm8996au_firmware qcs605_firmware qualcomm_215_firmware sd_210_firmware sd_212_firmware sd_205_firmwar… |
Buffer overflow due to improper validation of buffer size while IPA driver processing to perform read operation in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial … |
CWE-120
Classic Buffer Overflow |
CVE-2019-2333 | 2024-11-21 13:40 | 2019-10-1 | Show | GitHub Exploit DB Packet Storm |
| 221827 | 9.8 |
CRITICAL
Network |
qualcomm |
mdm9205_firmware mdm9206_firmware mdm9607_firmware mdm9615_firmware mdm9625_firmware mdm9635m_firmware mdm9655_firmware msm8909w_firmware msm8996au_firmware qcs605_firmware… |
Usage of hard-coded magic number for calculating heap guard bytes can allow users to corrupt heap blocks without heap algorithm knowledge in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivi… |
CWE-330
Use of Insufficiently Random Values |
CVE-2019-2294 | 2024-11-21 13:40 | 2019-10-1 | Show | GitHub Exploit DB Packet Storm |
| 221828 | 7.0 |
HIGH
Local |
qualcomm |
msm8909w_firmware qcs405_firmware qcs605_firmware qualcomm_215_firmware sd_425_firmware sd_439_firmware sd_429_firmware sd_450_firmware sd_625_firmware sd_632_firmware s… |
Possible use-after-free issue due to a race condition while calling camera ioctl concurrently in Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon … |
CWE-362 CWE-416 Race Condition Use After Free |
CVE-2019-2284 | 2024-11-21 13:40 | 2019-10-1 | Show | GitHub Exploit DB Packet Storm |
| 221829 | 9.8 |
CRITICAL
Network |
qualcomm |
mdm9650_firmware msm8909w_firmware msm8996au_firmware qcs605_firmware qualcomm_215_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_425_firmware sd_427_firmware<… |
Classic buffer overflow vulnerability while playing the specific video whose Decode picture buffer size is more than 16 in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Con… |
CWE-120
Classic Buffer Overflow |
CVE-2019-2252 | 2024-11-21 13:40 | 2019-10-1 | Show | GitHub Exploit DB Packet Storm |
| 221830 | 4.3 |
MEDIUM
Physics |
android | In LG's LAF component, there is a possible leak of information in a protected disk partition due to a missing bounds check. This could lead to local information disclosure via USB with User execution… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2019-2191 | 2024-11-21 13:40 | 2019-09-28 | Show | GitHub Exploit DB Packet Storm |