Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
251411 7.5 危険 NetArt Media - NetArtMEDIA WebSiteAdmin の ADMIN/login.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-3688 2012-03-27 18:42 2010-09-29 Show GitHub Exploit DB Packet Storm
251412 5 警告 Alex Kellner
TYPO3 Association
- TYPO3 の powermail extension における検証を回避される脆弱性 CWE-noinfo
情報不足
CVE-2010-3687 2012-03-27 18:42 2010-09-22 Show GitHub Exploit DB Packet Storm
251413 2.1 注意 Synology Inc. - Synology Disk Station の FTP 認証モジュールにおける重要な情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2010-3684 2012-03-27 18:42 2010-09-29 Show GitHub Exploit DB Packet Storm
251414 7.5 危険 wire plastic design - wpQuiz における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-3608 2012-03-27 18:42 2010-09-24 Show GitHub Exploit DB Packet Storm
251415 4.3 警告 NetArt Media - NetArt MEDIA Real Estate Portal の AGENTS/index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-3607 2012-03-27 18:42 2010-09-24 Show GitHub Exploit DB Packet Storm
251416 6.8 警告 NetArt Media - NetArt MEDIA Real Estate Portal の AGENTS/index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-3606 2012-03-27 18:42 2010-09-24 Show GitHub Exploit DB Packet Storm
251417 4.3 警告 Alex Kellner
TYPO3 Association
- TYPO3 の powermail extension におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-3605 2012-03-27 18:42 2010-09-22 Show GitHub Exploit DB Packet Storm
251418 7.5 危険 Alex Kellner
TYPO3 Association
- TYPO3 の powermail extension における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-3604 2012-03-27 18:42 2010-09-22 Show GitHub Exploit DB Packet Storm
251419 6.8 警告 i7MEDIA, LLC - mojoPortal の ファイルマネージャサービスにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2010-3603 2012-03-27 18:42 2010-09-24 Show GitHub Exploit DB Packet Storm
251420 4.3 警告 i7MEDIA, LLC - mojoPortal の ProfileView.aspx におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-3602 2012-03-27 18:42 2010-09-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
224421 9.8 CRITICAL
Network
qualcomm mdm9150_firmware
mdm9206_firmware
mdm9607_firmware
mdm9640_firmware
mdm9650_firmware
msm8909w_firmware
msm8996au_firmware
qcs405_firmware
qcs605_firmware
qualcomm_215_firmw…
Out of boundary access due to token received from ADSP and is used without validation as an index into the array in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial… CWE-129
 Improper Validation of Array Index
CVE-2019-2325 2024-11-21 13:40 2019-11-7 Show GitHub Exploit DB Packet Storm
224422 9.8 CRITICAL
Network
qualcomm mdm9150_firmware
mdm9206_firmware
mdm9607_firmware
mdm9615_firmware
mdm9640_firmware
mdm9650_firmware
msm8909w_firmware
sd_210_firmware
sd_212_firmware
sd_205_firmware
s…
When ADSP is compromised, the audio port index that`s returned from ADSP might be out of the valid range and leads to out of boundary access in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Co… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2019-2324 2024-11-21 13:40 2019-11-7 Show GitHub Exploit DB Packet Storm
224423 9.8 CRITICAL
Network
qualcomm mdm9150_firmware
mdm9206_firmware
mdm9607_firmware
mdm9640_firmware
mdm9650_firmware
msm8909w_firmware
msm8996au_firmware
qcs405_firmware
qcs605_firmware
qualcomm_215_firmw…
Lack of check to ensure crypto engine data passed by user is initialized can result in bus error in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon… CWE-1187
 Use of Uninitialized Resource
CVE-2019-2323 2024-11-21 13:40 2019-11-7 Show GitHub Exploit DB Packet Storm
224424 9.8 CRITICAL
Network
qualcomm apq8017_firmware
apq8053_firmware
apq8096au_firmware
mdm9206_firmware
mdm9207c_firmware
mdm9607_firmware
mdm9640_firmware
mdm9650_firmware
msm8905_firmware
msm8909_firmware…
While processing vendor command which contains corrupted channel count, an integer overflow occurs and finally will lead to heap overflow. in Snapdragon Auto, Snapdragon Consumer Electronics Connecti… CWE-787
CWE-190
 Out-of-bounds Write
 Integer Overflow or Wraparound
CVE-2019-2302 2024-11-21 13:40 2019-11-7 Show GitHub Exploit DB Packet Storm
224425 9.8 CRITICAL
Network
qualcomm msm8909w_firmware
msm8996au_firmware
qcs605_firmware
qualcomm_215_firmware
sd_210_firmware
sd_212_firmware
sd_205_firmware
sd_425_firmware
sd_427_firmware
sd_430_firmware
Out of bound write issue is observed while giving information about properties that have been set so far for playing video in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon … CWE-787
 Out-of-bounds Write
CVE-2019-2285 2024-11-21 13:40 2019-11-7 Show GitHub Exploit DB Packet Storm
224426 9.8 CRITICAL
Network
qualcomm mdm9150_firmware
mdm9206_firmware
mdm9607_firmware
mdm9640_firmware
mdm9650_firmware
msm8909w_firmware
msm8996au_firmware
qcs605_firmware
qualcomm_215_firmware
sd_210_firmw…
Improper validation of read and write index of tx and rx fifo`s before calculating pointer can lead to out-of-bound access in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon … CWE-125
CWE-787
Out-of-bounds Read
 Out-of-bounds Write
CVE-2019-2283 2024-11-21 13:40 2019-11-7 Show GitHub Exploit DB Packet Storm
224427 5.5 MEDIUM
Local
qualcomm mdm9150_firmware
mdm9205_firmware
mdm9206_firmware
mdm9607_firmware
mdm9650_firmware
msm8909w_firmware
msm8996au_firmware
qcs404_firmware
qcs605_firmware
qualcomm_215_firmw…
While deserializing any key blob during key operations, buffer overflow could occur exposing partial key information if any key operations are invoked(Depends on CVE-2018-13907) in Snapdragon Auto, S… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2019-2275 2024-11-21 13:40 2019-11-7 Show GitHub Exploit DB Packet Storm
224428 9.8 CRITICAL
Network
qualcomm mdm9150_firmware
mdm9607_firmware
mdm9615_firmware
mdm9625_firmware
mdm9635m_firmware
mdm9640_firmware
mdm9650_firmware
mdm9655_firmware
msm8909w_firmware
msm8996au_firmwar…
Improper validation of array index causes OOB write and then leads to memory corruption in MMCP in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon … CWE-787
CWE-129
 Out-of-bounds Write
 Improper Validation of Array Index
CVE-2019-2258 2024-11-21 13:40 2019-11-7 Show GitHub Exploit DB Packet Storm
224429 9.8 CRITICAL
Network
qualcomm ipq8074_firmware
mdm9205_firmware
mdm9650_firmware
qca8081_firmware
qcs605_firmware
sd_427_firmware
sd_435_firmware
sd_450_firmware
sd_625_firmware
sd_636_firmware
sd_66…
Kernel can do a memory read from arbitrary address passed by user during execution of a syscall in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon … CWE-125
Out-of-bounds Read
CVE-2019-2249 2024-11-21 13:40 2019-11-7 Show GitHub Exploit DB Packet Storm
224430 7.8 HIGH
Local
qualcomm mdm9205_firmware
mdm9640_firmware
msm8996au_firmware
qca6574_firmware
qcs605_firmware
qualcomm_215_firmware
sd_425_firmware
sd_427_firmware
sd_435_firmware
sd_439_firmware<…
Thread start can cause invalid memory writes to arbitrary memory location since the argument is passed by user to kernel in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Co… CWE-787
 Out-of-bounds Write
CVE-2019-2246 2024-11-21 13:40 2019-11-7 Show GitHub Exploit DB Packet Storm