|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 5, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 231631 | 1.9 | 注意 | VMware | - | VMware Workstation などの Reconfig.DLL における vmount2.exe がサービス運用妨害 (DoS) 状態となる脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2007-5438 | 2012-12-20 18:33 | 2007-10-12 | Show | GitHub Exploit DB Packet Storm |
| 231632 | 4.3 | 警告 | pro.setun | - | PRO-search におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2007-5434 | 2012-12-20 18:33 | 2007-10-12 | Show | GitHub Exploit DB Packet Storm |
| 231633 | 4.3 | 警告 | siteup | - | Site-Up の index.cgi におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2007-5433 | 2012-12-20 18:33 | 2007-10-12 | Show | GitHub Exploit DB Packet Storm |
| 231634 | 7.5 | 危険 | scottmanktelow | - | Stride における管理者権限を取得される脆脆弱性 |
CWE-200
情報漏えい |
CVE-2007-5432 | 2012-12-20 18:33 | 2007-10-12 | Show | GitHub Exploit DB Packet Storm |
| 231635 | 7.5 | 危険 | scottmanktelow | - | Stride における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2007-5430 | 2012-12-20 18:33 | 2007-10-12 | Show | GitHub Exploit DB Packet Storm |
| 231636 | 4.3 | 警告 | Umisoft | - | UMI CMS におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2007-5428 | 2012-12-20 18:33 | 2007-10-12 | Show | GitHub Exploit DB Packet Storm |
| 231637 | 7.5 | 危険 | Tiki Software Community Association | - | TikiWiki の tiki-graph_formula.php における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2007-5423 | 2012-12-20 18:33 | 2007-10-12 | Show | GitHub Exploit DB Packet Storm |
| 231638 | 6.8 | 警告 | quoc-huy | - | Joomla! 用の Quoc-Huy mp3_allopass コンポーネントにおける PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2007-5412 | 2012-12-20 18:33 | 2007-10-12 | Show | GitHub Exploit DB Packet Storm |
| 231639 | 6.8 | 警告 | picoflat cms | - | PicoFlat CMS の index.php における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2007-5390 | 2012-12-20 18:33 | 2007-10-12 | Show | GitHub Exploit DB Packet Storm |
| 231640 | 6.8 | 警告 | webdesktop | - | WebDesktop における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2007-5388 | 2012-12-20 18:33 | 2007-10-12 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 6, 2026, 4:18 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 199331 | 7.8 |
HIGH
Local |
qualcomm |
aqt1000_firmware qca6390_firmware qca6391_firmware qca6420_firmware qca6421_firmware qca6426_firmware qca6430_firmware qca6431_firmware qca6436_firmware qca6574_firmware | Incorrect pointer argument passed to trusted application TA could result in un-intended memory operations in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT |
CWE-704
Incorrect Type Conversion or Cast |
CVE-2021-1923 | 2024-11-21 14:45 | 2021-09-8 | Show | GitHub Exploit DB Packet Storm |
| 199332 | 9.8 |
CRITICAL
Network |
qualcomm |
apq8009_firmware apq8009w_firmware apq8017_firmware apq8037_firmware apq8053_firmware apq8084_firmware apq8096au_firmware aqt1000_firmware ar6003_firmware csr6030_firmware<… |
Integer underflow can occur due to improper handling of incoming RTCP packets in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snap… |
CWE-191
Integer Underflow (Wrap or Wraparound) |
CVE-2021-1920 | 2024-11-21 14:45 | 2021-09-8 | Show | GitHub Exploit DB Packet Storm |
| 199333 | 9.8 |
CRITICAL
Network |
qualcomm |
apq8009_firmware apq8009w_firmware apq8017_firmware apq8037_firmware apq8053_firmware apq8084_firmware apq8096au_firmware aqt1000_firmware csr6030_firmware csrb31024_firmwa… |
Integer underflow can occur when the RTCP length is lesser than than the actual blocks present in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Ind… |
CWE-191
Integer Underflow (Wrap or Wraparound) |
CVE-2021-1919 | 2024-11-21 14:45 | 2021-09-8 | Show | GitHub Exploit DB Packet Storm |
| 199334 | 9.8 |
CRITICAL
Network |
qualcomm |
apq8009_firmware apq8009w_firmware apq8017_firmware apq8037_firmware apq8053_firmware apq8084_firmware apq8096au_firmware aqt1000_firmware ar6003_firmware csr6030_firmware<… |
Possible buffer underflow due to lack of check for negative indices values when processing user provided input in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT… |
CWE-787
Out-of-bounds Write |
CVE-2021-1916 | 2024-11-21 14:45 | 2021-09-8 | Show | GitHub Exploit DB Packet Storm |
| 199335 | 7.5 |
HIGH
Network |
qualcomm |
apq8009_firmware apq8009w_firmware apq8017_firmware apq8037_firmware apq8053_firmware apq8096au_firmware aqt1000_firmware csr6030_firmware csrb31024_firmware mdm8207_firmwa… |
Loop with unreachable exit condition may occur due to improper handling of unsupported input in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Indus… |
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop') |
CVE-2021-1914 | 2024-11-21 14:45 | 2021-09-8 | Show | GitHub Exploit DB Packet Storm |
| 199336 | 5.5 |
MEDIUM
Local |
qualcomm |
apq8009_firmware apq8009w_firmware apq8017_firmware apq8053_firmware apq8064au_firmware apq8076_firmware apq8096au_firmware aqt1000_firmware ar8031_firmware ar8035_firmware… |
Child process can leak information from parent process due to numeric pids are getting compared and these pid can be reused in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon… |
CWE-697
Incorrect Comparison |
CVE-2021-1904 | 2024-11-21 14:45 | 2021-09-8 | Show | GitHub Exploit DB Packet Storm |
| 199337 | 9.8 |
CRITICAL
Network |
sonicwall | analytics | SonicWall Analytics 2.5 On-Prem is vulnerable to Java Debug Wire Protocol (JDWP) interface security misconfiguration vulnerability which potentially leads to Remote Code Execution. This vulnerability… |
NVD-CWE-noinfo
|
CVE-2021-20032 | 2024-11-21 14:45 | 2021-08-11 | Show | GitHub Exploit DB Packet Storm |
| 199338 | 6.1 |
MEDIUM
Network |
tecnick | tcexam | A reflected cross-site scripting vulnerability exists in TCExam <= 14.8.4. The paths provided in the f, d, and dir parameters in tce_select_mediafile.php were not properly validated and could cause r… |
CWE-79
Cross-site Scripting |
CVE-2021-20116 | 2024-11-21 14:45 | 2021-08-6 | Show | GitHub Exploit DB Packet Storm |
| 199339 | 6.1 |
MEDIUM
Network |
tecnick | tcexam | A reflected cross-site scripting vulnerability exists in TCExam <= 14.8.3. The paths provided in the f, d, and dir parameters in tce_filemanager.php were not properly validated and could cause reflec… |
CWE-79
Cross-site Scripting |
CVE-2021-20115 | 2024-11-21 14:45 | 2021-08-6 | Show | GitHub Exploit DB Packet Storm |
| 199340 | 9.8 |
CRITICAL
Network |
sonicwall |
sma_210_firmware sma_410_firmware sma_500v_firmware sra_4600_firmware sra_1600_firmware sra_va_firmware |
Improper neutralization of a SQL Command leading to SQL Injection vulnerability impacting end-of-life Secure Remote Access (SRA) products, specifically the SRA appliances running all 8.x firmware and… |
CWE-89
SQL Injection |
CVE-2021-20028 | 2024-11-21 14:45 | 2021-08-5 | Show | GitHub Exploit DB Packet Storm |