|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 23, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 251461 | 6 | 警告 | Broadwin アドバンテック株式会社 |
- | Advantech/BroadWin WebAccess におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2012-1235 | 2012-02-23 11:47 | 2012-02-21 | Show | GitHub Exploit DB Packet Storm |
| 251462 | 6.5 | 警告 | Broadwin アドバンテック株式会社 |
- | Advantech/BroadWin WebAccess における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2012-1234 | 2012-02-23 11:46 | 2012-02-21 | Show | GitHub Exploit DB Packet Storm |
| 251463 | 7.5 | 危険 | Broadwin アドバンテック株式会社 |
- | Advantech/BroadWin WebAccess における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2012-0244 | 2012-02-23 11:41 | 2012-02-21 | Show | GitHub Exploit DB Packet Storm |
| 251464 | 7.5 | 危険 | Broadwin アドバンテック株式会社 |
- | Advantech/BroadWin WebAccess の ActiveX コントロールにおけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2012-0243 | 2012-02-23 11:40 | 2012-02-21 | Show | GitHub Exploit DB Packet Storm |
| 251465 | 7.5 | 危険 | Broadwin アドバンテック株式会社 |
- | Advantech/BroadWin WebAccess におけるフォーマットストリングの脆弱性 |
CWE-134
書式文字列の問題 |
CVE-2012-0242 | 2012-02-23 11:37 | 2012-02-21 | Show | GitHub Exploit DB Packet Storm |
| 251466 | 5 | 警告 | Broadwin アドバンテック株式会社 |
- | Advantech/BroadWin WebAccess におけるサービス運用妨害 (メモリ破損) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2012-0241 | 2012-02-23 11:36 | 2012-02-21 | Show | GitHub Exploit DB Packet Storm |
| 251467 | 7.5 | 危険 | Broadwin アドバンテック株式会社 |
- | Advantech/BroadWin WebAccess の GbScriptAddUp.asp における任意のコードを実行される脆弱性 |
CWE-287
不適切な認証 |
CVE-2012-0240 | 2012-02-23 11:33 | 2012-02-21 | Show | GitHub Exploit DB Packet Storm |
| 251468 | 5 | 警告 | Broadwin アドバンテック株式会社 |
- | Advantech/BroadWin WebAccess の uaddUpAdmin.asp における管理者パスワードを変更される脆弱性 |
CWE-287
不適切な認証 |
CVE-2012-0239 | 2012-02-23 11:32 | 2012-02-21 | Show | GitHub Exploit DB Packet Storm |
| 251469 | 7.5 | 危険 | Broadwin アドバンテック株式会社 |
- | Advantech/BroadWin WebAccess の opcImg.asp におけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2012-0238 | 2012-02-23 11:29 | 2012-02-21 | Show | GitHub Exploit DB Packet Storm |
| 251470 | 6.4 | 警告 | Broadwin アドバンテック株式会社 |
- | Advantech/BroadWin WebAccess における日付と時刻の同期設定を変更される脆弱性 |
CWE-119
バッファエラー |
CVE-2012-0237 | 2012-02-23 11:27 | 2012-02-21 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 23, 2026, 4:08 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 195581 | 7.2 |
HIGH
Network |
zohocorp | manageengine_servicedesk_plus | Incomplete List of Disallowed Inputs in ManageEngine ServiceDesk Plus before version 11205 allows a remote, authenticated attacker to execute arbitrary commands with SYSTEM privileges. |
NVD-CWE-Other
|
CVE-2021-20081 | 2024-11-21 14:45 | 2021-06-10 | Show | GitHub Exploit DB Packet Storm |
| 195582 | 7.5 |
HIGH
Network |
qualcomm |
aqt1000_firmware ar8031_firmware ar8035_firmware ar9380_firmware csr8811_firmware csra6620_firmware csra6640_firmware csrb31024_firmware ipq4018_firmware ipq4028_firmware | Reachable assertion is possible while processing peer association WLAN message from host and nonstandard incoming packet in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Co… |
CWE-617
Reachable Assertion |
CVE-2021-1937 | 2024-11-21 14:45 | 2021-06-9 | Show | GitHub Exploit DB Packet Storm |
| 195583 | 7.0 |
HIGH
Local |
qualcomm |
apq8009_firmware apq8009w_firmware apq8017_firmware apq8053_firmware apq8064au_firmware apq8096au_firmware aqt1000_firmware ar8031_firmware csra6620_firmware csra6640_firmw… |
Possible use after free in Display due to race condition while creating an external display in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Indust… |
CWE-362 CWE-416 Race Condition Use After Free |
CVE-2021-1900 | 2024-11-21 14:45 | 2021-06-9 | Show | GitHub Exploit DB Packet Storm |
| 195584 | 8.8 |
HIGH
Network |
sonicwall | network_security_manager | A vulnerability in the SonicWall NSM On-Prem product allows an authenticated attacker to perform OS command injection using a crafted HTTP request. This vulnerability affects NSM On-Prem 2.2.0-R10 an… |
CWE-78
OS Command |
CVE-2021-20026 | 2024-11-21 14:45 | 2021-05-28 | Show | GitHub Exploit DB Packet Storm |
| 195585 | 8.1 |
HIGH
Network |
lucyparsonslabs | openoversight | Cross-site request forgery in OpenOversight 0.6.4 allows a remote attacker to perform sensitive application actions by tricking legitimate users into clicking a crafted link. |
CWE-352
Origin Validation Error |
CVE-2021-20096 | 2024-11-21 14:45 | 2021-05-25 | Show | GitHub Exploit DB Packet Storm |
| 195586 | 7.8 |
HIGH
Local |
sonicwall | email_security_virtual_appliance | SonicWall Email Security Virtual Appliance version 10.0.9 and earlier versions contain a default username and a password that is used at initial setup. An attacker could exploit this transitional/tem… |
CWE-798
Use of Hard-coded Credentials |
CVE-2021-20025 | 2024-11-21 14:45 | 2021-05-14 | Show | GitHub Exploit DB Packet Storm |
| 195587 | 7.8 |
HIGH
Local |
qualcomm |
apq8009_firmware apq8009w_firmware apq8017_firmware apq8053_firmware aqt1000_firmware ar8031_firmware ar8035_firmware ar9380_firmware csr8811_firmware csra6620_firmware … |
Possible use after free due to lack of null check while memory is being freed in FastRPC driver in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon In… |
CWE-416
Use After Free |
CVE-2021-1927 | 2024-11-21 14:45 | 2021-05-7 | Show | GitHub Exploit DB Packet Storm |
| 195588 | 7.5 |
HIGH
Network |
qualcomm |
aqt1000_firmware ar8031_firmware ar8035_firmware ar8151_firmware ar9380_firmware csr8811_firmware csra6620_firmware csra6640_firmware csrb31024_firmware ipq4018_firmware | Possible denial of service scenario due to improper handling of group management action frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connecti… |
CWE-617
Reachable Assertion |
CVE-2021-1925 | 2024-11-21 14:45 | 2021-05-7 | Show | GitHub Exploit DB Packet Storm |
| 195589 | 7.8 |
HIGH
Local |
qualcomm |
apq8096au_firmware aqt1000_firmware ar8031_firmware ar8035_firmware ar9380_firmware csr8811_firmware csra6620_firmware csra6640_firmware csrb31024_firmware fsm10055_firmwar… |
Buffer overflow can occur due to improper validation of NDP application information length in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivit… |
CWE-120
Classic Buffer Overflow |
CVE-2021-1915 | 2024-11-21 14:45 | 2021-05-7 | Show | GitHub Exploit DB Packet Storm |
| 195590 | 7.8 |
HIGH
Local |
qualcomm |
apq8009w_firmware apq8017_firmware apq8053_firmware aqt1000_firmware ar8031_firmware ar8035_firmware ar9380_firmware csr8811_firmware csra6620_firmware csra6640_firmware | Possible integer overflow due to improper length check while flashing an image in Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music |
CWE-190
Integer Overflow or Wraparound |
CVE-2021-1895 | 2024-11-21 14:45 | 2021-05-7 | Show | GitHub Exploit DB Packet Storm |