|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":April 28, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 251751 | 7.2 | 危険 | マイクロソフト | - | 複数の Microsoft 製品の OpenType Font フォーマットドライバにおける権限を取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2010-2741 | 2010-10-26 15:31 | 2010-10-12 | Show | GitHub Exploit DB Packet Storm |
| 251752 | 7.2 | 危険 | マイクロソフト | - | 複数の Microsoft 製品の OpenType Font フォーマットドライバにおける権限を取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2010-2740 | 2010-10-26 15:29 | 2010-10-12 | Show | GitHub Exploit DB Packet Storm |
| 251753 | 7.2 | 危険 | マイクロソフト | - | 複数の Microsoft 製品のカーネルモードドライバにおける権限昇格の脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2010-2744 | 2010-10-26 15:28 | 2010-10-12 | Show | GitHub Exploit DB Packet Storm |
| 251754 | 4.9 | 警告 | マイクロソフト | - | 複数の Microsoft 製品のカーネルモードドライバにおける権限昇格の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2010-2549 | 2010-10-26 15:28 | 2010-10-12 | Show | GitHub Exploit DB Packet Storm |
| 251755 | 6.5 | 警告 | IBM | - | Linux 上で稼働する IBM DB2 におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2010-0462 | 2010-10-26 15:24 | 2010-01-28 | Show | GitHub Exploit DB Packet Storm |
| 251756 | 9.3 | 危険 | マイクロソフト | - | 64-bit プラットフォーム上で稼働している Microsoft .NET Framework の JIT コンパイラにおける任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2010-3228 | 2010-10-25 16:37 | 2010-10-12 | Show | GitHub Exploit DB Packet Storm |
| 251757 | 9.3 | 危険 | マイクロソフト | - | 複数の Microsoft 製品の Embedded OpenType Font Engine における整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2010-1883 | 2010-10-25 16:37 | 2010-10-12 | Show | GitHub Exploit DB Packet Storm |
| 251758 | 7.6 | 危険 | マイクロソフト | - | 複数の Microsoft 製品の Media Player Network Sharing Service における任意のコードを実行される脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2010-3225 | 2010-10-25 16:36 | 2010-10-12 | Show | GitHub Exploit DB Packet Storm |
| 251759 | 9.3 | 危険 | マイクロソフト | - | Microsoft Internet Explorer における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2010-3331 | 2010-10-25 16:35 | 2010-10-12 | Show | GitHub Exploit DB Packet Storm |
| 251760 | 4.3 | 警告 | マイクロソフト | - | Microsoft Internet Explorer における重要な情報を取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2010-3330 | 2010-10-25 16:35 | 2010-10-12 | Show | GitHub Exploit DB Packet Storm |
Update Date:April 29, 2026, 4:51 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 199731 | 8.8 |
HIGH
Network |
tinyobjloader_project | tinyobjloader | An improper array index validation vulnerability exists in the LoadObj functionality of tinyobjloader v2.0-rc1 and tinyobjloader development commit 79d4421. A specially crafted file could lead to cod… |
CWE-129
Improper Validation of Array Index |
CVE-2020-28589 | 2024-11-21 14:22 | 2021-08-11 | Show | GitHub Exploit DB Packet Storm |
| 199732 | 5.3 |
MEDIUM
Network |
siemens |
cpu_1504d_tf_firmware cpu_1507d_tf_firmware cpu_1515sp_pc2_tf_firmware simatic_s7_plcsim_advanced_firmware simatic_s7-1500_software_controller tim_1531_irc_firmware cpu_1211c_firmwa… |
A vulnerability has been identified in SIMATIC Drive Controller family (All versions < V2.9.2), SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants) (All versions < V21.9), SIMATIC… |
CWE-863
Incorrect Authorization |
CVE-2020-28397 | 2024-11-21 14:22 | 2021-08-10 | Show | GitHub Exploit DB Packet Storm |
| 199733 | 9.8 |
CRITICAL
Network |
jeecg | jeecg_boot | An arbitrary file upload vulnerability in /jeecg-boot/sys/common/upload of jeecg-boot CMS 2.3 allows attackers to execute arbitrary code. |
CWE-434
Unrestricted Upload of File with Dangerous Type |
CVE-2020-28088 | 2024-11-21 14:22 | 2021-08-7 | Show | GitHub Exploit DB Packet Storm |
| 199734 | 7.5 |
HIGH
Network |
jeecg | jeecg_boot | A SQL injection vulnerability in /jeecg boot/sys/dict/loadtreedata of jeecg-boot CMS 2.3 allows attackers to access sensitive database information. |
CWE-89
SQL Injection |
CVE-2020-28087 | 2024-11-21 14:22 | 2021-08-7 | Show | GitHub Exploit DB Packet Storm |
| 199735 | 7.5 |
HIGH
Network |
siemens |
dk_standard_ethernet_controller_evaluation_kit_firmware ek-ertec_200_evaulation_kit_firmware ek-ertec_200p_evaluation_kit_firmware ruggedcom_rm1224_firmware scalance_m-800_firmware sca… |
Affected devices contain a vulnerability that allows an unauthenticated attacker to trigger a denial-of-service condition. The vulnerability can be triggered if a large amount of DCP reset packets ar… |
CWE-770
Allocation of Resources Without Limits or Throttling |
CVE-2020-28400 | 2024-11-21 14:22 | 2021-07-13 | Show | GitHub Exploit DB Packet Storm |
| 199736 | 7.8 |
HIGH
Local |
prusa3d | prusaslicer | An out-of-bounds write vulnerability exists in the Admesh stl_fix_normal_directions() functionality of Prusa Research PrusaSlicer 2.2.0 and Master (commit 4b040b856). A specially crafted AMF file can… |
CWE-787
Out-of-bounds Write |
CVE-2020-28598 | 2024-11-21 14:22 | 2021-07-8 | Show | GitHub Exploit DB Packet Storm |
| 199737 | 4.3 |
MEDIUM
Network |
dovecot fedoraproject |
dovecot fedora |
The Sieve engine in Dovecot before 2.3.15 allows Uncontrolled Resource Consumption, as demonstrated by a situation with a complex regular expression for the regex extension. |
CWE-770
Allocation of Resources Without Limits or Throttling |
CVE-2020-28200 | 2024-11-21 14:22 | 2021-06-28 | Show | GitHub Exploit DB Packet Storm |
| 199738 | 5.9 |
MEDIUM
Physics |
linux netapp |
linux_kernel cloud_backup h410c_firmware h300s_firmware h500s_firmware h700s_firmware h300e_firmware h500e_firmware h700e_firmware h410s_firmware |
The vgacon subsystem in the Linux kernel before 5.8.10 mishandles software scrollback. There is a vgacon_scrolldelta out-of-bounds read, aka CID-973c096f6a85. |
CWE-125
Out-of-bounds Read |
CVE-2020-28097 | 2024-11-21 14:22 | 2021-06-24 | Show | GitHub Exploit DB Packet Storm |
| 199739 | 7.5 |
HIGH
Network |
gulpjs oracle |
glob-parent communications_cloud_native_core_policy |
This affects the package glob-parent before 5.1.2. The enclosure regex used to check for strings ending in enclosure containing path separator. |
CWE-400
Uncontrolled Resource Consumption |
CVE-2020-28469 | 2024-11-21 14:22 | 2021-06-4 | Show | GitHub Exploit DB Packet Storm |
| 199740 | 9.8 |
CRITICAL
Network |
articlecms_project | articlecms | A file upload issue exists in all versions of ArticleCMS which allows malicious users to getshell. |
CWE-434
Unrestricted Upload of File with Dangerous Type |
CVE-2020-28063 | 2024-11-21 14:22 | 2021-05-14 | Show | GitHub Exploit DB Packet Storm |