|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 9, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 250291 | 7.5 | 危険 | esoftpro | - | esoftpro Online Photo Pro の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4999 | 2011-12-9 14:21 | 2011-11-1 | Show | GitHub Exploit DB Packet Storm |
| 250292 | 7.5 | 危険 | esoftpro | - | esoftpro Online Contact Manager の view.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-5001 | 2011-12-9 14:21 | 2011-11-1 | Show | GitHub Exploit DB Packet Storm |
| 250293 | 4.3 | 警告 | Exponent CMS project | - | Exponent CMS におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-5002 | 2011-12-9 14:20 | 2011-11-1 | Show | GitHub Exploit DB Packet Storm |
| 250294 | 7.5 | 危険 | Autartica | - | Joomla! 用 の AutarTimonial コンポーネントにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-5003 | 2011-12-9 14:20 | 2011-11-1 | Show | GitHub Exploit DB Packet Storm |
| 250295 | 4.3 | 警告 | VideoWhisper.com | - | VideoWhisper PHP 2 Way Video Chat コンポーネントにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-4971 | 2011-12-9 14:19 | 2011-11-2 | Show | GitHub Exploit DB Packet Storm |
| 250296 | 7.5 | 危険 | OlyKit | - | OlyKit Swoopo Clone 2010 の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4997 | 2011-12-9 14:18 | 2011-11-2 | Show | GitHub Exploit DB Packet Storm |
| 250297 | 7.5 | 危険 | Maulana Al Matien | - | ardeaCore PHP Framework におけるリモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2010-4998 | 2011-12-9 14:18 | 2011-11-2 | Show | GitHub Exploit DB Packet Storm |
| 250298 | 7.5 | 危険 | Joe Pieruccini | - | MCLogin System の login/login_index.php におけるSQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-5000 | 2011-12-9 14:17 | 2011-11-2 | Show | GitHub Exploit DB Packet Storm |
| 250299 | 7.5 | 危険 | 2daybiz | - | 2daybiz Polls Script の searchvote.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-5004 | 2011-12-9 14:16 | 2011-11-2 | Show | GitHub Exploit DB Packet Storm |
| 250300 | 4.3 | 警告 | Rayzz | - | Rayzz Photoz の members/profileCommentsResponse.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-5005 | 2011-12-9 14:15 | 2011-11-2 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 9, 2026, 5:07 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 210931 | 7.8 |
HIGH
Local |
qualcomm |
ar8035_firmware pm215_firmware pm3003a_firmware pm6125_firmware pm6150_firmware pm6150a_firmware pm6150l_firmware pm6350_firmware pm640a_firmware pm640l_firmware pm640p_… |
Out of bound write in logger due to prefix size is not validated while prepended to logging string in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon… |
CWE-129
Improper Validation of Array Index |
CVE-2020-11294 | 2024-11-21 13:57 | 2021-05-7 | Show | GitHub Exploit DB Packet Storm |
| 210932 | 7.8 |
HIGH
Local |
qualcomm |
apq8009_firmware apq8017_firmware apq8037_firmware apq8053_firmware apq8064au_firmware apq8096au_firmware aqt1000_firmware ar8031_firmware ar8035_firmware ar8151_firmware | Out of bound write can occur in TZ command handler due to lack of validation of command ID in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industr… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2020-11289 | 2024-11-21 13:57 | 2021-05-7 | Show | GitHub Exploit DB Packet Storm |
| 210933 | 9.8 |
CRITICAL
Network |
qualcomm |
apq8009_firmware apq8009w_firmware apq8017_firmware apq8037_firmware apq8053_firmware apq8084_firmware apq8096au_firmware aqt1000_firmware ar6003_firmware ar8151_firmware | Memory corruption while processing crafted SDES packets due to improper length check in sdes packets recieved in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT,… |
CWE-190
Integer Overflow or Wraparound |
CVE-2020-11279 | 2024-11-21 13:57 | 2021-05-7 | Show | GitHub Exploit DB Packet Storm |
| 210934 | 6.0 |
MEDIUM
Local |
qualcomm |
apq8017_firmware apq8037_firmware apq8053_firmware apq8064au_firmware apq8096au_firmware aqt1000_firmware ar8031_firmware ar8035_firmware ar8151_firmware csra6620_firmware<… |
Out of bound read can happen in Widevine TA while copying data to buffer from user data due to lack of check of buffer length received in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity,… |
CWE-125
Out-of-bounds Read |
CVE-2020-11293 | 2024-11-21 13:57 | 2021-05-7 | Show | GitHub Exploit DB Packet Storm |
| 210935 | 7.8 |
HIGH
Local |
qualcomm |
aqt1000_firmware ar8031_firmware ar8035_firmware csra6620_firmware csra6640_firmware csrb31024_firmware fsm10055_firmware fsm10056_firmware mdm9205_firmware pm3003a_firmwar… |
Out of bound write can occur in playready while processing command due to lack of input validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2020-11288 | 2024-11-21 13:57 | 2021-05-7 | Show | GitHub Exploit DB Packet Storm |
| 210936 | 9.1 |
CRITICAL
Network |
qualcomm |
apq8009_firmware apq8009w_firmware apq8017_firmware apq8037_firmware apq8053_firmware apq8084_firmware apq8096au_firmware aqt1000_firmware ar8151_firmware csr6030_firmware<… |
Buffer over-read while unpacking the RTCP packet we may read extra byte if wrong length is provided in RTCP packets in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consume… |
CWE-125
Out-of-bounds Read |
CVE-2020-11285 | 2024-11-21 13:57 | 2021-05-7 | Show | GitHub Exploit DB Packet Storm |
| 210937 | 7.5 |
HIGH
Network |
qualcomm |
aqt1000_firmware csrb31024_firmware fsm10055_firmware fsm10056_firmware pm3003a_firmware pm456_firmware pm6125_firmware pm6150_firmware pm6150a_firmware pm6150l_firmware | Denial of service in MODEM due to assert to the invalid configuration in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon M… |
CWE-617
Reachable Assertion |
CVE-2020-11274 | 2024-11-21 13:57 | 2021-05-7 | Show | GitHub Exploit DB Packet Storm |
| 210938 | 7.5 |
HIGH
Network |
qualcomm |
csrb31024_firmware pm3003a_firmware pm6150a_firmware pm6150l_firmware pm6350_firmware pm7150a_firmware pm7150l_firmware pm7250_firmware pm7250b_firmware pm8005_firmware … |
Histogram type KPI was teardown with the assumption of the existence of histogram binning info and will lead to null pointer access when histogram binning info is missing due to lack of null check in… |
CWE-476
NULL Pointer Dereference |
CVE-2020-11273 | 2024-11-21 13:57 | 2021-05-7 | Show | GitHub Exploit DB Packet Storm |
| 210939 | 7.5 |
HIGH
Network |
qualcomm |
mdm9635m mdm9615 mdm9640 mdm9645 qca6174a qca6584 msm8974 msm8939 sd210 apq8009 apq8016 qca6174 msm8108 msm8208 msm8209 msm8608 wcd9330 mdm8215 m… |
Potential UE reset while decoding a crafted Sib1 or SIB1 that schedules unsupported SIBs and can lead to denial of service in Snapdragon Auto, Snapdragon Mobile |
CWE-20
Improper Input Validation |
CVE-2020-11268 | 2024-11-21 13:57 | 2021-05-7 | Show | GitHub Exploit DB Packet Storm |
| 210940 | 5.5 |
MEDIUM
Local |
qualcomm |
qca6574au sa6155p sa8155p sa6145p sa6150p sa8150p sa8195p pm6150a pm6150l pm6350 pm660 pm660l pm7250b pm8008 pm8009 pm8350 pm8350b pm8350bh pm835… |
Memory corruption during buffer allocation due to dereferencing session ctx pointer without checking if pointer is valid in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Mo… |
CWE-476
NULL Pointer Dereference |
CVE-2020-11254 | 2024-11-21 13:57 | 2021-05-7 | Show | GitHub Exploit DB Packet Storm |