|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 27, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 230341 | 3.6 | 注意 | scribe | - | Scribe の index.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2008-0822 | 2012-12-20 18:34 | 2008-02-19 | Show | GitHub Exploit DB Packet Storm |
| 230342 | 3.6 | 注意 | plutostatus | - | PlutoStatus Locator の index.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2008-0819 | 2012-12-20 18:34 | 2008-02-19 | Show | GitHub Exploit DB Packet Storm |
| 230343 | 6.4 | 警告 | truc | - | TRUC の download.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2008-0814 | 2012-12-20 18:34 | 2008-02-18 | Show | GitHub Exploit DB Packet Storm |
| 230344 | 5 | 警告 | xpweb | - | XPWeb の Download.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2008-0813 | 2012-12-20 18:34 | 2008-02-18 | Show | GitHub Exploit DB Packet Storm |
| 230345 | 9.3 | 危険 | reality | - | PHPizabi の image.php における任意のコードを実行される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-0805 | 2012-12-20 18:34 | 2008-02-18 | Show | GitHub Exploit DB Packet Storm |
| 230346 | 6.8 | 警告 | Thecus | - | Thecus N5200Pro NAS Server の usrgetform.html における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2008-0804 | 2012-12-20 18:34 | 2008-02-18 | Show | GitHub Exploit DB Packet Storm |
| 230347 | 7.5 | 危険 | VWar | - | VWar の calendar.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-0753 | 2012-12-20 18:34 | 2008-02-13 | Show | GitHub Exploit DB Packet Storm |
| 230348 | 10 | 危険 | ソニー・コンピュータエンタテインメント | - | Sony ImageStation 用の SonyISUpload.cab におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2008-0748 | 2012-12-20 18:34 | 2008-02-13 | Show | GitHub Exploit DB Packet Storm |
| 230349 | 7.5 | 危険 | PreProject.com | - | PreProjects.com Pre Hotels & Resorts Management System の user_login.asp における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-0744 | 2012-12-20 18:34 | 2008-02-12 | Show | GitHub Exploit DB Packet Storm |
| 230350 | 7.5 | 危険 | powerscripts | - | PowerScripts PowerNews におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2008-0742 | 2012-12-20 18:34 | 2008-02-12 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 27, 2026, 4:52 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 312161 | 6.7 |
MEDIUM
Local |
qualcomm |
wsa8835_firmware wsa8830_firmware wcn3988_firmware wcn3980_firmware wcn3680b_firmware wcn3660b_firmware sw5100p_firmware sw5100_firmware snapdragon_w5\+_gen_1_wearable_platfor… |
Memory corruption during the network scan request. |
CWE-120
Classic Buffer Overflow |
CVE-2024-23375 | 2024-10-17 05:26 | 2024-10-7 | Show | GitHub Exploit DB Packet Storm |
| 312162 | 6.7 |
MEDIUM
Local |
qualcomm |
wsa8835_firmware wsa8830_firmware wcn3988_firmware wcn3980_firmware wcd9380_firmware sw5100p_firmware sw5100_firmware snapdragon_w5\+_gen_1_wearable_platform_firmware snapdrag… |
Memory corruption is possible when an attempt is made from userspace or console to write some haptics effects pattern to the haptics debugfs file. |
CWE-787
Out-of-bounds Write |
CVE-2024-23374 | 2024-10-17 05:26 | 2024-10-7 | Show | GitHub Exploit DB Packet Storm |
| 312163 | 4.3 |
MEDIUM
Network |
mattermost | mattermost_server | Mattermost versions 9.9.x <= 9.9.1, 9.5.x <= 9.5.7, 9.10.0, 9.8.x <= 9.8.2 fail to enforce permissions which allows a guest user with read access to upload files to a channel. |
NVD-CWE-noinfo
|
CVE-2024-43780 | 2024-10-17 05:07 | 2024-08-23 | Show | GitHub Exploit DB Packet Storm |
| 312164 | 6.7 |
MEDIUM
Local |
qualcomm |
wsa8835_firmware wsa8830_firmware wcn3988_firmware wcn3980_firmware wcd9380_firmware sw5100p_firmware sw5100_firmware snapdragon_w5\+_gen_1_wearable_platform_firmware snapdrag… |
Memory corruption while sending the persist buffer command packet from the user-space to the kernel space through the IOCTL call. |
CWE-416
Use After Free |
CVE-2024-23376 | 2024-10-17 05:07 | 2024-10-7 | Show | GitHub Exploit DB Packet Storm |
| 312165 | 4.9 |
MEDIUM
Network |
mattermost | mattermost_server | Mattermost versions 9.9.x <= 9.9.1, 9.5.x <= 9.5.7, 9.10.x <= 9.10.0, 9.8.x <= 9.8.2 fail to properly enforce permissions which allows a user with systems manager role with read-only access to teams … |
NVD-CWE-noinfo
|
CVE-2024-42497 | 2024-10-17 05:05 | 2024-08-23 | Show | GitHub Exploit DB Packet Storm |
| 312166 | 8.8 |
HIGH
Network |
tenda | o6_firmware | A vulnerability classified as critical has been found in Tenda O6 1.0.0.7(2054). Affected is the function fromVirtualSet of the file /goform/setPortForward. The manipulation of the argument ip/localP… |
CWE-787
Out-of-bounds Write |
CVE-2024-8231 | 2024-10-17 05:01 | 2024-08-28 | Show | GitHub Exploit DB Packet Storm |
| 312167 | 6.7 |
MEDIUM
Local |
qualcomm |
srv1m_firmware srv1h_firmware snapdragon_auto_5g_modem-rf_gen_2_firmware sa9000p_firmware sa8775p_firmware sa8770p_firmware sa8650p_firmware sa8620p_firmware sa8255p_firmware<… |
Memory corruption while invoking IOCTL calls for MSM module from the user space during audio playback and record. |
CWE-120
Classic Buffer Overflow |
CVE-2024-23378 | 2024-10-17 05:00 | 2024-10-7 | Show | GitHub Exploit DB Packet Storm |
| 312168 | 6.7 |
MEDIUM
Local |
qualcomm |
wsa8835_firmware wsa8830_firmware wsa8815_firmware wsa8810_firmware wcn3990_firmware wcd9380_firmware wcd9341_firmware wcd9340_firmware wcd9335_firmware srv1m_firmware s… |
Memory corruption while unmapping the fastrpc map when two threads can free the same map in concurrent scenario. |
CWE-415
Double Free |
CVE-2024-23379 | 2024-10-17 04:58 | 2024-10-7 | Show | GitHub Exploit DB Packet Storm |
| 312169 | 7.5 |
HIGH
Network |
qualcomm |
snapdragon_w5\+_gen_1_wearable_platform_firmware wsa8835_firmware wsa8830_firmware wsa8810_firmware wcn3988_firmware wcn3980_firmware wcn3950_firmware wcd9385_firmware wcd9380… |
Transient DOS while parsing noninheritance IE of Extension element when length of IE is 2 of beacon frame. |
CWE-125
Out-of-bounds Read |
CVE-2024-33049 | 2024-10-17 04:57 | 2024-10-7 | Show | GitHub Exploit DB Packet Storm |
| 312170 | 7.5 |
HIGH
Network |
phpoffice | phpspreadsheet | PHPSpreadsheet is a pure PHP library for reading and writing spreadsheet files. It's possible for an attacker to construct an XLSX file which links media from external URLs. When opening the XLSX fil… |
CWE-918 CWE-36 Server-Side Request Forgery (SSRF) Absolute Path Traversal |
CVE-2024-45290 | 2024-10-17 04:54 | 2024-10-8 | Show | GitHub Exploit DB Packet Storm |