|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 14, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 230131 | 5 | 警告 | simplog | - | Simplog の comments.php におけるコメントを編集される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-4091 | 2012-12-20 19:28 | 2009-11-29 | Show | GitHub Exploit DB Packet Storm |
| 230132 | 7.5 | 危険 | telepark | - | telepark.wiki の ajax/addComment.php における任意のコードを実行される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2009-4090 | 2012-12-20 19:28 | 2009-11-29 | Show | GitHub Exploit DB Packet Storm |
| 230133 | 5 | 警告 | telepark | - | telepark.wiki における認可を回避される脆弱性 |
CWE-287
不適切な認証 |
CVE-2009-4089 | 2012-12-20 19:28 | 2009-11-29 | Show | GitHub Exploit DB Packet Storm |
| 230134 | 6.8 | 警告 | telepark | - | telepark.wiki におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-4088 | 2012-12-20 19:28 | 2009-11-29 | Show | GitHub Exploit DB Packet Storm |
| 230135 | 4.3 | 警告 | telepark | - | telepark.wiki の index.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4087 | 2012-12-20 19:28 | 2009-11-29 | Show | GitHub Exploit DB Packet Storm |
| 230136 | 4.3 | 警告 | puntolatinoclub | - | Drupal 用の Gallery Assist モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4064 | 2012-12-20 19:28 | 2009-11-18 | Show | GitHub Exploit DB Packet Storm |
| 230137 | 4.3 | 警告 | yuriy babenko | - | Drupal 用の Agreement モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4061 | 2012-12-20 19:28 | 2009-11-18 | Show | GitHub Exploit DB Packet Storm |
| 230138 | 7.5 | 危険 | telebidauctionscript | - | Telebid Auction Script の allauctions.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4058 | 2012-12-20 19:28 | 2009-11-23 | Show | GitHub Exploit DB Packet Storm |
| 230139 | 7.5 | 危険 | PowerDNS | - | PowerDNS Recursor における DNS データを偽装される脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-4010 | 2012-12-20 19:28 | 2010-01-6 | Show | GitHub Exploit DB Packet Storm |
| 230140 | 10 | 危険 | PowerDNS | - | PowerDNS Recursor におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-4009 | 2012-12-20 19:28 | 2010-01-6 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 14, 2026, 4:12 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 202301 | 6.7 |
MEDIUM
Local |
intel | m10jnp2sb_firmware | Improper input validation in the firmware for some Intel(R) Server Board M10JNP Family before version 7.216 may allow a privileged user to potentially enable an escalation of privilege via local acce… |
CWE-20
Improper Input Validation |
CVE-2021-0185 | 2024-11-21 14:42 | 2022-11-11 | Show | GitHub Exploit DB Packet Storm |
| 202302 | 7.8 |
HIGH
Local |
intel |
core_i9-10900x_firmware core_i9-10920x_firmware core_i9-10940x_firmware core_i9-10980xe_firmware xeon_e5-1603_v4_firmware xeon_e5-1607_v4_firmware xeon_e5-1620_v4_firmware xeon_e… |
Uncaught exception in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access. |
CWE-755
Improper Handling of Exceptional Conditions |
CVE-2021-0190 | 2024-11-21 14:42 | 2022-05-13 | Show | GitHub Exploit DB Packet Storm |
| 202303 | 8.0 |
HIGH
Adjacent |
intel | manageability_commander | Improper input validation for the Intel(R) Manageability Commander before version 2.2 may allow an authenticated user to potentially enable escalation of privilege via adjacent access. |
CWE-20
Improper Input Validation |
CVE-2021-0126 | 2024-11-21 14:42 | 2022-05-13 | Show | GitHub Exploit DB Packet Storm |
| 202304 | 7.2 |
HIGH
Network |
intel | in-band_manageability | Improper access control in the Intel(R) In-Band Manageability software before version 2.13.0 may allow a privileged user to potentially enable escalation of privilege via network access. |
NVD-CWE-Other
|
CVE-2021-0194 | 2024-11-21 14:42 | 2022-05-13 | Show | GitHub Exploit DB Packet Storm |
| 202305 | 7.2 |
HIGH
Network |
ibm | in-band_manageability | Improper authentication in the Intel(R) In-Band Manageability software before version 2.13.0 may allow a privileged user to potentially enable escalation of privilege via network access. |
CWE-287
Improper Authentication |
CVE-2021-0193 | 2024-11-21 14:42 | 2022-05-13 | Show | GitHub Exploit DB Packet Storm |
| 202306 | 7.8 |
HIGH
Local |
intel |
xeon_e3-1558l_v5_firmware xeon_e3-1565l_v5_firmware xeon_e3-1578l_v5_firmware xeon_e3-1585_v5_firmware xeon_e3-1585l_v5_firmware xeon_e3-1515m_v5_firmware xeon_e3-1545m_v5_firmware<… |
Use of out-of-range pointer offset in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access. |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2021-0189 | 2024-11-21 14:42 | 2022-05-13 | Show | GitHub Exploit DB Packet Storm |
| 202307 | 7.8 |
HIGH
Local |
intel |
xeon_e3-1558l_v5_firmware xeon_e3-1565l_v5_firmware xeon_e3-1578l_v5_firmware xeon_e3-1585_v5_firmware xeon_e3-1585l_v5_firmware xeon_e3-1515m_v5_firmware xeon_e3-1545m_v5_firmware<… |
Return of pointer value outside of expected range in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access. |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2021-0188 | 2024-11-21 14:42 | 2022-05-13 | Show | GitHub Exploit DB Packet Storm |
| 202308 | 7.8 |
HIGH
Local |
intel |
xeon_bronze_3204_firmware xeon_bronze_3206r_firmware xeon_gold_5215_firmware xeon_gold_5215l_firmware xeon_gold_5217_firmware xeon_gold_5218_firmware xeon_gold_5218b_firmware xeo… |
Improper input validation in the BIOS authenticated code module for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access. |
CWE-20
Improper Input Validation |
CVE-2021-0159 | 2024-11-21 14:42 | 2022-05-13 | Show | GitHub Exploit DB Packet Storm |
| 202309 | 5.5 |
MEDIUM
Local |
intel |
xeon_e7-8894_v4_firmware xeon_e7-4809_v4_firmware xeon_e7-4820_v4_firmware xeon_e7-4830_v4_firmware xeon_e7-4850_v4_firmware xeon_e7-8860_v4_firmware xeon_e7-8867_v4_firmware xeo… |
Unchecked return value in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable information disclosure via local access. |
CWE-252
Unchecked Return Value |
CVE-2021-0155 | 2024-11-21 14:42 | 2022-05-13 | Show | GitHub Exploit DB Packet Storm |
| 202310 | 7.8 |
HIGH
Local |
intel |
core_i9-10900x_firmware core_i9-10920x_firmware core_i9-10940x_firmware core_i9-10980xe_firmware xeon_e5-1603_v4_firmware xeon_e5-1607_v4_firmware xeon_e5-1620_v4_firmware xeon_e… |
Out-of-bounds write in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access. |
CWE-787
Out-of-bounds Write |
CVE-2021-0153 | 2024-11-21 14:42 | 2022-05-13 | Show | GitHub Exploit DB Packet Storm |