|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 23, 2026, 10 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 250071 | 6.8 | 警告 | OrangeHRM | - | OrangeHRM におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2010-4798 | 2012-03-27 18:42 | 2011-04-26 | Show | GitHub Exploit DB Packet Storm |
| 250072 | 7.5 | 危険 | truworthit | - | Truworth Flex Timesheet のログインフォームにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4797 | 2012-03-27 18:42 | 2011-04-26 | Show | GitHub Exploit DB Packet Storm |
| 250073 | 7.5 | 危険 | phpyun | - | PHPYun における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4796 | 2012-03-27 18:42 | 2011-04-26 | Show | GitHub Exploit DB Packet Storm |
| 250074 | 7.5 | 危険 | joomlaseller Joomla! |
- | Joomla! の com_jscalendar コンポーネントにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4795 | 2012-03-27 18:42 | 2011-04-26 | Show | GitHub Exploit DB Packet Storm |
| 250075 | 4.3 | 警告 | joomlaseller Joomla! |
- | Joomla! の com_jscalendar コンポーネントにおけるクロスサイトスクリプティング脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-4794 | 2012-03-27 18:42 | 2011-04-26 | Show | GitHub Exploit DB Packet Storm |
| 250076 | 7.5 | 危険 | site2nite | - | Site2Nite Auto e-Manager の detail.asp における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4793 | 2012-03-27 18:42 | 2011-04-26 | Show | GitHub Exploit DB Packet Storm |
| 250077 | 4.3 | 警告 | openit | - | OPEN IT OverLook の title.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-4792 | 2012-03-27 18:42 | 2011-04-26 | Show | GitHub Exploit DB Packet Storm |
| 250078 | 4 | 警告 | IBM | - | IBM WCM のオーサリングツールにおけるドラフト生成のアクセス制限を回避する脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2010-4806 | 2012-03-27 18:42 | 2010-11-16 | Show | GitHub Exploit DB Packet Storm |
| 250079 | 7.5 | 危険 | marcusg | - | PHP-Fusion の MG User-Fotoalbum モジュールにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4791 | 2012-03-27 18:42 | 2011-04-26 | Show | GitHub Exploit DB Packet Storm |
| 250080 | 5.8 | 警告 | in-mediakg | - | FilterFTP におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2010-4790 | 2012-03-27 18:42 | 2011-04-26 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 23, 2026, 4:08 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 213881 | 9.8 |
CRITICAL
Network |
qualcomm |
apq8009_firmware apq8009w_firmware apq8017_firmware apq8037_firmware apq8053_firmware apq8064au_firmware apq8096_firmware apq8096au_firmware apq8096sg_firmware apq8098_firm… |
u'Buffer over read can happen while parsing mkv clip due to improper typecasting of data returned from atomsize' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial… |
CWE-125
Out-of-bounds Read |
CVE-2020-11193 | 2024-11-21 13:57 | 2020-11-12 | Show | GitHub Exploit DB Packet Storm |
| 213882 | 9.8 |
CRITICAL
Network |
qualcomm |
qcm4290_firmware qcs4290_firmware qm215_firmware qsm8350_firmware sa6145p_firmware sa6155_firmware sa6155p_firmware sa8155_firmware sa8155p_firmware sdx55_firmware sdx55… |
u'Possible buffer overflow will occur in video while parsing mp4 clip with crafted esds atom size.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobile in QCM4290, QC… |
CWE-190
Integer Overflow or Wraparound |
CVE-2020-11184 | 2024-11-21 13:57 | 2020-11-12 | Show | GitHub Exploit DB Packet Storm |
| 213883 | 7.8 |
HIGH
Local |
qualcomm |
apq8009w_firmware msm8909w_firmware qcs605_firmware qm215_firmware sa6155_firmware sa6155p_firmware sa8155_firmware sa8155p_firmware sda640_firmware sda670_firmware sda8… |
u'Use after free issue in Bluetooth transport driver when a method in the object is accessed after the object has been deleted due to improper timer handling.' in Snapdragon Auto, Snapdragon Compute,… |
CWE-416
Use After Free |
CVE-2020-11175 | 2024-11-21 13:57 | 2020-11-12 | Show | GitHub Exploit DB Packet Storm |
| 213884 | 9.8 |
CRITICAL
Network |
qualcomm |
apq8009w_firmware apq8017_firmware apq8053_firmware apq8064au_firmware apq8096au_firmware apq8098_firmware mdm9206_firmware mdm9650_firmware msm8909w_firmware msm8953_firmw… |
u'Null-pointer dereference can occur while accessing data buffer beyond its size that leads to access the buffer beyond its range' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Sna… |
CWE-476
NULL Pointer Dereference |
CVE-2020-11168 | 2024-11-21 13:57 | 2020-11-12 | Show | GitHub Exploit DB Packet Storm |
| 213885 | 9.8 |
CRITICAL
Network |
qualcomm |
ipq4019_firmware ipq6018_firmware ipq8064_firmware ipq8074_firmware qca9531_firmware qca9980_firmware |
u'fscanf reads a string from a file and stores its contents on a statically allocated stack memory which leads to stack overflow' in Snapdragon Wired Infrastructure and Networking in IPQ4019, IPQ6018… |
CWE-120
Classic Buffer Overflow |
CVE-2020-11172 | 2024-11-21 13:57 | 2020-11-2 | Show | GitHub Exploit DB Packet Storm |
| 213886 | 7.8 |
HIGH
Local |
qualcomm |
agatti_firmware apq8009_firmware apq8017_firmware apq8053_firmware apq8096au_firmware apq8098_firmware bitra_firmware ipq4019_firmware ipq5018_firmware ipq6018_firmware … |
u'Array index underflow issue in adsp driver due to improper check of channel id before used as array index.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT,… |
CWE-129
Improper Validation of Array Index |
CVE-2020-11174 | 2024-11-21 13:57 | 2020-11-2 | Show | GitHub Exploit DB Packet Storm |
| 213887 | 7.0 |
HIGH
Local |
qualcomm |
agatti_firmware apq8053_firmware bitra_firmware ipq4019_firmware ipq5018_firmware ipq6018_firmware ipq8064_firmware ipq8074_firmware kamorta_firmware mdm9607_firmware ms… |
u'Two threads running simultaneously from user space can lead to race condition in fastRPC driver' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon… |
CWE-362 CWE-416 Race Condition Use After Free |
CVE-2020-11173 | 2024-11-21 13:57 | 2020-11-2 | Show | GitHub Exploit DB Packet Storm |
| 213888 | 9.1 |
CRITICAL
Network |
qualcomm |
apq8009_firmware apq8053_firmware qca6390_firmware qcn7605_firmware qcn7606_firmware sa415m_firmware sa515m_firmware sa6155p_firmware sa8155p_firmware sc8180x_firmware s… |
u'Buffer over-read while processing received L2CAP packet due to lack of integer overflow check' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Conne… |
CWE-125 CWE-190 Out-of-bounds Read Integer Overflow or Wraparound |
CVE-2020-11169 | 2024-11-21 13:57 | 2020-11-2 | Show | GitHub Exploit DB Packet Storm |
| 213889 | 6.7 |
MEDIUM
Local |
intel | bmc_firmware | NVIDIA DGX servers, all DGX-1 with BMC firmware versions prior to 3.38.30 and all DGX-2 with BMC firmware versions prior to 1.06.06, contains a vulnerability in the AMI BMC firmware in which software… |
CWE-347
Improper Verification of Cryptographic Signature |
CVE-2020-11488 | 2024-11-21 13:57 | 2020-10-29 | Show | GitHub Exploit DB Packet Storm |
| 213890 | 7.5 |
HIGH
Network |
intel | bmc_firmware | NVIDIA DGX servers, DGX-1 with BMC firmware versions prior to 3.38.30. DGX-2 with BMC firmware versions prior to 1.06.06 and all DGX A100 Servers with all BMC firmware versions, contains a vulnerabil… |
CWE-798
Use of Hard-coded Credentials |
CVE-2020-11487 | 2024-11-21 13:57 | 2020-10-29 | Show | GitHub Exploit DB Packet Storm |