|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 13, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 249431 | 4 | 警告 | IBM | - | IBM FileNet P8AE の Workplace コンポーネントにおけるアクセス制限を回避する脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-5001 | 2012-03-27 18:42 | 2010-09-20 | Show | GitHub Exploit DB Packet Storm |
| 249432 | 4.3 | 警告 | IBM | - | IBM FileNet P8AE の Workplace コンポーネントにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-5000 | 2012-03-27 18:42 | 2010-09-20 | Show | GitHub Exploit DB Packet Storm |
| 249433 | 4.3 | 警告 | IBM | - | IBM FileNet P8AE の Workplace コンポーネントにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4999 | 2012-03-27 18:42 | 2010-09-20 | Show | GitHub Exploit DB Packet Storm |
| 249434 | 2.6 | 注意 | IBM | - | IBM FileNet P8AE の Workplace コンポーネントにおけるアクセス制限を回避する脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-4998 | 2012-03-27 18:42 | 2010-09-20 | Show | GitHub Exploit DB Packet Storm |
| 249435 | 7.2 | 危険 | GNOME Project | - | gnome-power-manager における無人のラップトップにアクセスされる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-4997 | 2012-03-27 18:42 | 2010-09-7 | Show | GitHub Exploit DB Packet Storm |
| 249436 | 6.8 | 警告 | TWiki | - | TWiki におけるクロスサイトリクエストフォージェリ脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2009-4898 | 2012-03-27 18:42 | 2010-09-7 | Show | GitHub Exploit DB Packet Storm |
| 249437 | 4.7 | 警告 | Linux | - | Linux kernel の tty_fasync 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-362
競合状態 |
CVE-2009-4895 | 2012-03-27 18:42 | 2010-09-8 | Show | GitHub Exploit DB Packet Storm |
| 249438 | 4 | 警告 | g.rodola | - | pyftpdlib の on_dtp_close 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2009-5013 | 2012-03-27 18:42 | 2009-07-29 | Show | GitHub Exploit DB Packet Storm |
| 249439 | 4 | 警告 | g.rodola | - | pyftpdlib の ftpserver.py におけるアクセス制限を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-5012 | 2012-03-27 18:42 | 2009-04-20 | Show | GitHub Exploit DB Packet Storm |
| 249440 | 4.3 | 警告 | g.rodola | - | pyftpdlib の FTPHandler クラスにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-362
競合状態 |
CVE-2009-5011 | 2012-03-27 18:42 | 2009-02-27 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 14, 2026, 4 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 212011 | 9.8 |
CRITICAL
Network |
qualcomm |
qcm4290_firmware qcs4290_firmware qm215_firmware qsm8350_firmware sa6145p_firmware sa6155_firmware sa6155p_firmware sa8155_firmware sa8155p_firmware sdx55_firmware sdx55… |
u'Possible buffer overflow will occur in video while parsing mp4 clip with crafted esds atom size.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobile in QCM4290, QC… |
CWE-190
Integer Overflow or Wraparound |
CVE-2020-11184 | 2024-11-21 13:57 | 2020-11-12 | Show | GitHub Exploit DB Packet Storm |
| 212012 | 7.8 |
HIGH
Local |
qualcomm |
apq8009w_firmware msm8909w_firmware qcs605_firmware qm215_firmware sa6155_firmware sa6155p_firmware sa8155_firmware sa8155p_firmware sda640_firmware sda670_firmware sda8… |
u'Use after free issue in Bluetooth transport driver when a method in the object is accessed after the object has been deleted due to improper timer handling.' in Snapdragon Auto, Snapdragon Compute,… |
CWE-416
Use After Free |
CVE-2020-11175 | 2024-11-21 13:57 | 2020-11-12 | Show | GitHub Exploit DB Packet Storm |
| 212013 | 9.8 |
CRITICAL
Network |
qualcomm |
apq8009w_firmware apq8017_firmware apq8053_firmware apq8064au_firmware apq8096au_firmware apq8098_firmware mdm9206_firmware mdm9650_firmware msm8909w_firmware msm8953_firmw… |
u'Null-pointer dereference can occur while accessing data buffer beyond its size that leads to access the buffer beyond its range' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Sna… |
CWE-476
NULL Pointer Dereference |
CVE-2020-11168 | 2024-11-21 13:57 | 2020-11-12 | Show | GitHub Exploit DB Packet Storm |
| 212014 | 9.8 |
CRITICAL
Network |
qualcomm |
ipq4019_firmware ipq6018_firmware ipq8064_firmware ipq8074_firmware qca9531_firmware qca9980_firmware |
u'fscanf reads a string from a file and stores its contents on a statically allocated stack memory which leads to stack overflow' in Snapdragon Wired Infrastructure and Networking in IPQ4019, IPQ6018… |
CWE-120
Classic Buffer Overflow |
CVE-2020-11172 | 2024-11-21 13:57 | 2020-11-2 | Show | GitHub Exploit DB Packet Storm |
| 212015 | 7.8 |
HIGH
Local |
qualcomm |
agatti_firmware apq8009_firmware apq8017_firmware apq8053_firmware apq8096au_firmware apq8098_firmware bitra_firmware ipq4019_firmware ipq5018_firmware ipq6018_firmware … |
u'Array index underflow issue in adsp driver due to improper check of channel id before used as array index.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT,… |
CWE-129
Improper Validation of Array Index |
CVE-2020-11174 | 2024-11-21 13:57 | 2020-11-2 | Show | GitHub Exploit DB Packet Storm |
| 212016 | 7.0 |
HIGH
Local |
qualcomm |
agatti_firmware apq8053_firmware bitra_firmware ipq4019_firmware ipq5018_firmware ipq6018_firmware ipq8064_firmware ipq8074_firmware kamorta_firmware mdm9607_firmware ms… |
u'Two threads running simultaneously from user space can lead to race condition in fastRPC driver' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon… |
CWE-362 CWE-416 Race Condition Use After Free |
CVE-2020-11173 | 2024-11-21 13:57 | 2020-11-2 | Show | GitHub Exploit DB Packet Storm |
| 212017 | 9.1 |
CRITICAL
Network |
qualcomm |
apq8009_firmware apq8053_firmware qca6390_firmware qcn7605_firmware qcn7606_firmware sa415m_firmware sa515m_firmware sa6155p_firmware sa8155p_firmware sc8180x_firmware s… |
u'Buffer over-read while processing received L2CAP packet due to lack of integer overflow check' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Conne… |
CWE-125 CWE-190 Out-of-bounds Read Integer Overflow or Wraparound |
CVE-2020-11169 | 2024-11-21 13:57 | 2020-11-2 | Show | GitHub Exploit DB Packet Storm |
| 212018 | 6.7 |
MEDIUM
Local |
intel | bmc_firmware | NVIDIA DGX servers, all DGX-1 with BMC firmware versions prior to 3.38.30 and all DGX-2 with BMC firmware versions prior to 1.06.06, contains a vulnerability in the AMI BMC firmware in which software… |
CWE-347
Improper Verification of Cryptographic Signature |
CVE-2020-11488 | 2024-11-21 13:57 | 2020-10-29 | Show | GitHub Exploit DB Packet Storm |
| 212019 | 7.5 |
HIGH
Network |
intel | bmc_firmware | NVIDIA DGX servers, DGX-1 with BMC firmware versions prior to 3.38.30. DGX-2 with BMC firmware versions prior to 1.06.06 and all DGX A100 Servers with all BMC firmware versions, contains a vulnerabil… |
CWE-798
Use of Hard-coded Credentials |
CVE-2020-11487 | 2024-11-21 13:57 | 2020-10-29 | Show | GitHub Exploit DB Packet Storm |
| 212020 | 9.8 |
CRITICAL
Network |
intel | bmc_firmware | NVIDIA DGX servers, all DGX-1 with BMC firmware versions prior to 3.38.30, contain a vulnerability in the AMI BMC firmware in which software allows an attacker to upload or transfer files that can be… |
CWE-434
Unrestricted Upload of File with Dangerous Type |
CVE-2020-11486 | 2024-11-21 13:57 | 2020-10-29 | Show | GitHub Exploit DB Packet Storm |