|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 2, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 250921 | 10 | 危険 | IBM | - | IBM ENOVIA 6 の Web Services における詳細不明な脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-4218 | 2012-03-27 18:42 | 2010-11-9 | Show | GitHub Exploit DB Packet Storm |
| 250922 | 5 | 警告 | IBM | - | IBM Tivoli Directory Server (TDS) のプロキシサーバにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2010-4217 | 2012-03-27 18:42 | 2010-10-19 | Show | GitHub Exploit DB Packet Storm |
| 250923 | 5 | 警告 | IBM | - | IBM TDS におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-119
バッファエラー |
CVE-2010-4216 | 2012-03-27 18:42 | 2010-10-29 | Show | GitHub Exploit DB Packet Storm |
| 250924 | 6.5 | 警告 | Foswiki | - | Foswiki の UI/Manage.pm における権限を取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2010-4215 | 2012-03-27 18:42 | 2010-11-12 | Show | GitHub Exploit DB Packet Storm |
| 250925 | 4.3 | 警告 | wellsfargo | - | Android 用の Wells Fargo Mobile アプリケーションにおける重要な情報を取得される脆弱性 |
CWE-310
暗号の問題 |
CVE-2010-4214 | 2012-03-27 18:42 | 2010-11-8 | Show | GitHub Exploit DB Packet Storm |
| 250926 | 4.3 | 警告 | bankofamerica | - | Android のバンク・オブ・アメリカのアプリケーションにおける重要な情報を取得される脆弱性 |
CWE-310
暗号の問題 |
CVE-2010-4213 | 2012-03-27 18:42 | 2010-11-8 | Show | GitHub Exploit DB Packet Storm |
| 250927 | 1.9 | 注意 | USAA | - | USAA application for Android における重要なオンラインバンキングの情報を取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2010-4212 | 2012-03-27 18:42 | 2010-11-8 | Show | GitHub Exploit DB Packet Storm |
| 250928 | 2.9 | 注意 | ebay | - | PayPal app における Paypal Web サーバになりすまされる脆弱性 |
CWE-287
不適切な認証 |
CVE-2010-4211 | 2012-03-27 18:42 | 2010-11-8 | Show | GitHub Exploit DB Packet Storm |
| 250929 | 7.2 | 危険 | FreeBSD | - | FreeBSD の pfs_getextattr 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2010-4210 | 2012-03-27 18:42 | 2010-11-10 | Show | GitHub Exploit DB Packet Storm |
| 250930 | 4.3 | 警告 | Mozilla Foundation Yahoo! |
- | Bugzilla で使用される YUI の Flash コンポーネント構造におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-4209 | 2012-03-27 18:42 | 2010-11-7 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 3, 2026, 4:18 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 223351 | 6.5 |
MEDIUM
Adjacent |
linux debian redhat canonical netapp |
linux_kernel debian_linux enterprise_linux ubuntu_linux solidfire hci_management_node snapprotect active_iq_unified_manager_for_vmware_vsphere cn1610_firmware |
The SCTP socket buffer used by a userspace application is not accounted by the cgroups subsystem. An attacker can use this flaw to cause a denial of service attack. Kernel 3.10.x and 4.18.x branches … | - | CVE-2019-3874 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |
| 223352 | 9.1 |
CRITICAL
Network |
libssh2 debian netapp opensuse |
libssh2 debian_linux ontap_select_deploy_administration_utility leap |
An out of bounds read flaw was discovered in libssh2 before 1.8.1 in the way SSH packets with a padding length value greater than the packet length are parsed. A remote attacker who compromises a SSH… |
CWE-125
Out-of-bounds Read |
CVE-2019-3861 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |
| 223353 | 9.1 |
CRITICAL
Network |
libssh2 debian netapp opensuse |
libssh2 debian_linux ontap_select_deploy_administration_utility leap |
An out of bounds read flaw was discovered in libssh2 before 1.8.1 in the way SFTP packets with empty payloads are parsed. A remote attacker who compromises a SSH server may be able to cause a Denial … |
CWE-125
Out-of-bounds Read |
CVE-2019-3860 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |
| 223354 | 8.8 |
HIGH
Network |
libssh2 debian netapp opensuse redhat fedoraproject oracle |
libssh2 debian_linux ontap_select_deploy_administration_utility leap enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_tus … |
An integer overflow flaw which could lead to an out of bounds write was discovered in libssh2 before 1.8.1 in the way SSH_MSG_CHANNEL_REQUEST packets with an exit signal are parsed. A remote attacker… |
CWE-787 CWE-190 Out-of-bounds Write Integer Overflow or Wraparound |
CVE-2019-3857 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |
| 223355 | 8.8 |
HIGH
Network |
libssh2 debian netapp opensuse redhat fedoraproject oracle |
libssh2 debian_linux ontap_select_deploy_administration_utility leap enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_tus … |
An integer overflow flaw, which could lead to an out of bounds write, was discovered in libssh2 before 1.8.1 in the way keyboard prompt requests are parsed. A remote attacker who compromises a SSH se… |
CWE-787 CWE-190 Out-of-bounds Write Integer Overflow or Wraparound |
CVE-2019-3856 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |
| 223356 | 9.8 |
CRITICAL
Network |
atlassian |
confluence confluence_server |
The WebDAV endpoint in Atlassian Confluence Server and Data Center before version 6.6.7 (the fixed version for 6.6.x), from version 6.7.0 before 6.8.5 (the fixed version for 6.8.x), and from version … |
CWE-918
Server-Side Request Forgery (SSRF) |
CVE-2019-3395 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |
| 223357 | 5.5 |
MEDIUM
Local |
artifex redhat fedoraproject opensuse debian |
ghostscript enterprise_linux_desktop enterprise_linux_workstation enterprise_linux enterprise_linux_server enterprise_linux_server_tus enterprise_linux_server_eus enterprise_linu… |
It was found that the forceput operator could be extracted from the DefineResource method in ghostscript before 9.27. A specially crafted PostScript file could use this flaw in order to, for example,… |
NVD-CWE-Other
|
CVE-2019-3838 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |
| 223358 | 5.5 |
MEDIUM
Local |
artifex redhat fedoraproject debian opensuse |
ghostscript enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_tus enterprise_linux_server_eus enterprise_linux_server_aus ansi… |
It was found that the superexec operator was available in the internal dictionary in ghostscript before 9.27. A specially crafted PostScript file could use this flaw in order to, for example, have ac… |
CWE-862
Missing Authorization |
CVE-2019-3835 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |
| 223359 | 9.8 |
CRITICAL
Network |
atlassian |
confluence confluence_server |
The Widget Connector macro in Atlassian Confluence Server before version 6.6.12 (the fixed version for 6.6.x), from version 6.7.0 before 6.12.3 (the fixed version for 6.12.x), from version 6.13.0 bef… |
CWE-22
Path Traversal |
CVE-2019-3396 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |
| 223360 | 6.8 |
MEDIUM
Network |
kubevirt | containerized_data_importer | Kubevirt/virt-cdi-importer, versions 1.4.0 to 1.5.3 inclusive, were reported to disable TLS certificate validation when importing data into PVCs from container registries. This could enable man-in-th… |
CWE-295
Improper Certificate Validation |
CVE-2019-3841 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |