|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 26, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 252031 | 4.3 | 警告 | Stoneware | - | Stoneware webNetwork におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-0285 | 2012-01-25 14:13 | 2012-01-23 | Show | GitHub Exploit DB Packet Storm |
| 252032 | 5.8 | 警告 | NeoAxis | - | NeoAxis web player におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2012-0907 | 2012-01-25 11:24 | 2012-01-20 | Show | GitHub Exploit DB Packet Storm |
| 252033 | 7.5 | 危険 | deV!L'z Clanportal | - | deV!L'z Clanportal (DZCP) の Moviebase アドオンにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2012-0906 | 2012-01-25 11:00 | 2012-01-20 | Show | GitHub Exploit DB Packet Storm |
| 252034 | 7.5 | 危険 | deV!L'z Clanportal | - | deV!L'z Clanportal (DZCP) の Gamebase アドオンにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2012-0905 | 2012-01-25 10:57 | 2012-01-20 | Show | GitHub Exploit DB Packet Storm |
| 252035 | 4.3 | 警告 | VideoLAN | - | VLC media player におけるサービス運用妨害 (クラッシュ) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2012-0904 | 2012-01-25 10:54 | 2012-01-20 | Show | GitHub Exploit DB Packet Storm |
| 252036 | 4.3 | 警告 | VMware | - | VMware Zimbra Desktop におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-0903 | 2012-01-25 10:51 | 2012-01-20 | Show | GitHub Exploit DB Packet Storm |
| 252037 | 5 | 警告 | AirTies | - | AirTies Air 4450 におけるサービス運用妨害 (リブート) の脆弱性 |
CWE-noinfo
情報不足 |
CVE-2012-0902 | 2012-01-25 10:43 | 2012-01-20 | Show | GitHub Exploit DB Packet Storm |
| 252038 | 4.3 | 警告 | attenzione | - | WordPress 用 YouSayToo auto-publishing プラグインにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-0901 | 2012-01-25 10:39 | 2012-01-20 | Show | GitHub Exploit DB Packet Storm |
| 252039 | 4.3 | 警告 | Beehive Forum | - | Beehive Forum におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-0900 | 2012-01-25 10:35 | 2012-01-20 | Show | GitHub Exploit DB Packet Storm |
| 252040 | 4.3 | 警告 | Annuaire PHP | - | Annuaire PHP におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-0899 | 2012-01-25 10:32 | 2012-01-20 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 27, 2026, 4:52 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 221821 | 7.8 |
HIGH
Local |
android | In startActivityMayWait of ActivityStarter.java, there is a possible incorrect Activity launch due to an incorrect permission check. This could lead to local escalation of privilege with no additiona… |
CWE-276
Incorrect Default Permissions |
CVE-2019-2173 | 2024-11-21 13:40 | 2019-10-12 | Show | GitHub Exploit DB Packet Storm | |
| 221822 | 7.8 |
HIGH
Local |
android | In the default privileges of NFC, there is a possible local bypass of user interaction requirements on package installation due to a default permission. This could lead to local escalation of privile… |
CWE-276
Incorrect Default Permissions |
CVE-2019-2114 | 2024-11-21 13:40 | 2019-10-12 | Show | GitHub Exploit DB Packet Storm | |
| 221823 | 5.5 |
MEDIUM
Local |
android | In ScreenRotationAnimation of ScreenRotationAnimation.java, there is a possible capture of a secure screen due to a missing permission check. This could lead to local information disclosure with no a… |
CWE-862
Missing Authorization |
CVE-2019-2110 | 2024-11-21 13:40 | 2019-10-12 | Show | GitHub Exploit DB Packet Storm | |
| 221824 | 7.8 |
HIGH
Local |
google debian canonical netapp huawei |
android debian_linux ubuntu_linux cloud_backup steelstore_cloud_integrated_storage service_processor data_availability_services solidfire hci_management_node solidfire_base… |
A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interaction is required to exploit this vulnerability, however exploitation does require… |
CWE-416
Use After Free |
CVE-2019-2215 | 2024-11-21 13:40 | 2019-10-12 | Show | GitHub Exploit DB Packet Storm |
| 221825 | 7.8 |
HIGH
Local |
qualcomm |
mdm9150_firmware mdm9206_firmware mdm9607_firmware mdm9640_firmware mdm9650_firmware msm8909w_firmware msm8996au_firmware qcs405_firmware qcs605_firmware qualcomm_215_firmw… |
Buffer overflow when the audio buffer size provided by user is larger than the maximum allowable audio buffer size. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industr… |
CWE-120
Classic Buffer Overflow |
CVE-2019-2341 | 2024-11-21 13:40 | 2019-10-1 | Show | GitHub Exploit DB Packet Storm |
| 221826 | 7.8 |
HIGH
Local |
qualcomm |
mdm9150_firmware mdm9607_firmware mdm9650_firmware msm8909w_firmware msm8996au_firmware qcs605_firmware qualcomm_215_firmware sd_210_firmware sd_212_firmware sd_205_firmwar… |
Buffer overflow due to improper validation of buffer size while IPA driver processing to perform read operation in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial … |
CWE-120
Classic Buffer Overflow |
CVE-2019-2333 | 2024-11-21 13:40 | 2019-10-1 | Show | GitHub Exploit DB Packet Storm |
| 221827 | 9.8 |
CRITICAL
Network |
qualcomm |
mdm9205_firmware mdm9206_firmware mdm9607_firmware mdm9615_firmware mdm9625_firmware mdm9635m_firmware mdm9655_firmware msm8909w_firmware msm8996au_firmware qcs605_firmware… |
Usage of hard-coded magic number for calculating heap guard bytes can allow users to corrupt heap blocks without heap algorithm knowledge in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivi… |
CWE-330
Use of Insufficiently Random Values |
CVE-2019-2294 | 2024-11-21 13:40 | 2019-10-1 | Show | GitHub Exploit DB Packet Storm |
| 221828 | 7.0 |
HIGH
Local |
qualcomm |
msm8909w_firmware qcs405_firmware qcs605_firmware qualcomm_215_firmware sd_425_firmware sd_439_firmware sd_429_firmware sd_450_firmware sd_625_firmware sd_632_firmware s… |
Possible use-after-free issue due to a race condition while calling camera ioctl concurrently in Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon … |
CWE-362 CWE-416 Race Condition Use After Free |
CVE-2019-2284 | 2024-11-21 13:40 | 2019-10-1 | Show | GitHub Exploit DB Packet Storm |
| 221829 | 9.8 |
CRITICAL
Network |
qualcomm |
mdm9650_firmware msm8909w_firmware msm8996au_firmware qcs605_firmware qualcomm_215_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_425_firmware sd_427_firmware<… |
Classic buffer overflow vulnerability while playing the specific video whose Decode picture buffer size is more than 16 in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Con… |
CWE-120
Classic Buffer Overflow |
CVE-2019-2252 | 2024-11-21 13:40 | 2019-10-1 | Show | GitHub Exploit DB Packet Storm |
| 221830 | 4.3 |
MEDIUM
Physics |
android | In LG's LAF component, there is a possible leak of information in a protected disk partition due to a missing bounds check. This could lead to local information disclosure via USB with User execution… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2019-2191 | 2024-11-21 13:40 | 2019-09-28 | Show | GitHub Exploit DB Packet Storm |