|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":April 29, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 252851 | 6.8 | 警告 | シュナイダーエレクトリック株式会社 (旧社名株式会社エーピーシー・ジャパン) | - | APC Network Management Card におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2009-1797 | 2010-03-12 15:12 | 2009-12-28 | Show | GitHub Exploit DB Packet Storm |
| 252852 | 6.6 | 警告 | 日立 | - | JP1/Cm2/Network Node Manager のリモートコンソールにおけるファイルパーミッションの脆弱性 |
CWE-264
認可・権限・アクセス制御 |
- | 2010-03-12 15:12 | 2010-02-26 | Show | GitHub Exploit DB Packet Storm |
| 252853 | 9.3 | 危険 | Panda Security | - | Panda Security ActiveScan におけるコンポーネントのデジタル署名を検証しない問題 |
CWE-94
コード・インジェクション |
CVE-2009-3735 | 2010-03-12 15:12 | 2010-02-12 | Show | GitHub Exploit DB Packet Storm |
| 252854 | 5 | 警告 | サイバートラスト株式会社 OpenSSL Project IBM レッドハット |
- | OpenSSL の dtls1_retrieve_buffered_fragment 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2009-1379 | 2010-03-12 14:44 | 2009-05-19 | Show | GitHub Exploit DB Packet Storm |
| 252855 | 5 | 警告 | サイバートラスト株式会社 OpenSSL Project IBM レッドハット |
- | OpenSSL の dtls1_process_out_of_seq_message 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2009-1378 | 2010-03-12 14:44 | 2009-05-19 | Show | GitHub Exploit DB Packet Storm |
| 252856 | 5 | 警告 | サイバートラスト株式会社 OpenSSL Project IBM レッドハット |
- | OpenSSL の dtls1_buffer_record 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-119
バッファエラー |
CVE-2009-1377 | 2010-03-12 14:43 | 2009-05-19 | Show | GitHub Exploit DB Packet Storm |
| 252857 | 5 | 警告 | アップル サイバートラスト株式会社 OpenSSL Project Apache Software Foundation レッドハット |
- | OpenSSL の zlib_stateful_init 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2008-1678 | 2010-03-12 14:43 | 2008-07-10 | Show | GitHub Exploit DB Packet Storm |
| 252858 | 5.8 | 警告 | OpenPNEプロジェクト | - | OpenPNE におけるアクセス制限回避の脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2010-1040 | 2010-03-11 12:39 | 2010-03-5 | Show | GitHub Exploit DB Packet Storm |
| 252859 | 10 | 危険 | アドビシステムズ | - | Adobe Download Manager における任意のプログラムをダウンロードおよびインストールされる脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-0189 | 2010-03-11 12:07 | 2010-02-23 | Show | GitHub Exploit DB Packet Storm |
| 252860 | 7.2 | 危険 | サイバートラスト株式会社 Linux レッドハット |
- | Linux kernel の collect_rx_frame 関数における脆弱性 |
CWE-119
バッファエラー |
CVE-2009-4005 | 2010-03-11 12:05 | 2009-11-20 | Show | GitHub Exploit DB Packet Storm |
Update Date:April 29, 2026, 4:51 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 199731 | 8.8 |
HIGH
Network |
tinyobjloader_project | tinyobjloader | An improper array index validation vulnerability exists in the LoadObj functionality of tinyobjloader v2.0-rc1 and tinyobjloader development commit 79d4421. A specially crafted file could lead to cod… |
CWE-129
Improper Validation of Array Index |
CVE-2020-28589 | 2024-11-21 14:22 | 2021-08-11 | Show | GitHub Exploit DB Packet Storm |
| 199732 | 5.3 |
MEDIUM
Network |
siemens |
cpu_1504d_tf_firmware cpu_1507d_tf_firmware cpu_1515sp_pc2_tf_firmware simatic_s7_plcsim_advanced_firmware simatic_s7-1500_software_controller tim_1531_irc_firmware cpu_1211c_firmwa… |
A vulnerability has been identified in SIMATIC Drive Controller family (All versions < V2.9.2), SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants) (All versions < V21.9), SIMATIC… |
CWE-863
Incorrect Authorization |
CVE-2020-28397 | 2024-11-21 14:22 | 2021-08-10 | Show | GitHub Exploit DB Packet Storm |
| 199733 | 9.8 |
CRITICAL
Network |
jeecg | jeecg_boot | An arbitrary file upload vulnerability in /jeecg-boot/sys/common/upload of jeecg-boot CMS 2.3 allows attackers to execute arbitrary code. |
CWE-434
Unrestricted Upload of File with Dangerous Type |
CVE-2020-28088 | 2024-11-21 14:22 | 2021-08-7 | Show | GitHub Exploit DB Packet Storm |
| 199734 | 7.5 |
HIGH
Network |
jeecg | jeecg_boot | A SQL injection vulnerability in /jeecg boot/sys/dict/loadtreedata of jeecg-boot CMS 2.3 allows attackers to access sensitive database information. |
CWE-89
SQL Injection |
CVE-2020-28087 | 2024-11-21 14:22 | 2021-08-7 | Show | GitHub Exploit DB Packet Storm |
| 199735 | 7.5 |
HIGH
Network |
siemens |
dk_standard_ethernet_controller_evaluation_kit_firmware ek-ertec_200_evaulation_kit_firmware ek-ertec_200p_evaluation_kit_firmware ruggedcom_rm1224_firmware scalance_m-800_firmware sca… |
Affected devices contain a vulnerability that allows an unauthenticated attacker to trigger a denial-of-service condition. The vulnerability can be triggered if a large amount of DCP reset packets ar… |
CWE-770
Allocation of Resources Without Limits or Throttling |
CVE-2020-28400 | 2024-11-21 14:22 | 2021-07-13 | Show | GitHub Exploit DB Packet Storm |
| 199736 | 7.8 |
HIGH
Local |
prusa3d | prusaslicer | An out-of-bounds write vulnerability exists in the Admesh stl_fix_normal_directions() functionality of Prusa Research PrusaSlicer 2.2.0 and Master (commit 4b040b856). A specially crafted AMF file can… |
CWE-787
Out-of-bounds Write |
CVE-2020-28598 | 2024-11-21 14:22 | 2021-07-8 | Show | GitHub Exploit DB Packet Storm |
| 199737 | 4.3 |
MEDIUM
Network |
dovecot fedoraproject |
dovecot fedora |
The Sieve engine in Dovecot before 2.3.15 allows Uncontrolled Resource Consumption, as demonstrated by a situation with a complex regular expression for the regex extension. |
CWE-770
Allocation of Resources Without Limits or Throttling |
CVE-2020-28200 | 2024-11-21 14:22 | 2021-06-28 | Show | GitHub Exploit DB Packet Storm |
| 199738 | 5.9 |
MEDIUM
Physics |
linux netapp |
linux_kernel cloud_backup h410c_firmware h300s_firmware h500s_firmware h700s_firmware h300e_firmware h500e_firmware h700e_firmware h410s_firmware |
The vgacon subsystem in the Linux kernel before 5.8.10 mishandles software scrollback. There is a vgacon_scrolldelta out-of-bounds read, aka CID-973c096f6a85. |
CWE-125
Out-of-bounds Read |
CVE-2020-28097 | 2024-11-21 14:22 | 2021-06-24 | Show | GitHub Exploit DB Packet Storm |
| 199739 | 7.5 |
HIGH
Network |
gulpjs oracle |
glob-parent communications_cloud_native_core_policy |
This affects the package glob-parent before 5.1.2. The enclosure regex used to check for strings ending in enclosure containing path separator. |
CWE-400
Uncontrolled Resource Consumption |
CVE-2020-28469 | 2024-11-21 14:22 | 2021-06-4 | Show | GitHub Exploit DB Packet Storm |
| 199740 | 9.8 |
CRITICAL
Network |
articlecms_project | articlecms | A file upload issue exists in all versions of ArticleCMS which allows malicious users to getshell. |
CWE-434
Unrestricted Upload of File with Dangerous Type |
CVE-2020-28063 | 2024-11-21 14:22 | 2021-05-14 | Show | GitHub Exploit DB Packet Storm |