|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":April 29, 2026, 4 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 253121 | 9.3 | 危険 | マイクロソフト | - | Microsoft Internet Explorer に脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-3672 | 2010-01-14 12:08 | 2009-11-25 | Show | GitHub Exploit DB Packet Storm |
| 253122 | 9.3 | 危険 | サン・マイクロシステムズ VMware |
- | Sun Java SE の java.lang パッケージにおける脆弱性 |
CWE-362
競合状態 |
CVE-2009-2724 | 2010-01-14 12:08 | 2009-08-10 | Show | GitHub Exploit DB Packet Storm |
| 253123 | 10 | 危険 | サン・マイクロシステムズ VMware |
- | Sun Java SE の Provider クラスにおける脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-2721 | 2010-01-14 12:08 | 2009-08-10 | Show | GitHub Exploit DB Packet Storm |
| 253124 | 5 | 警告 | 有限会社シースリー | - | WebCalenderC3 におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2010-0348 | 2010-01-12 15:01 | 2010-01-12 | Show | GitHub Exploit DB Packet Storm |
| 253125 | 4.3 | 警告 | 有限会社シースリー | - | WebCalenderC3 におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-0349 | 2010-01-12 15:00 | 2010-01-12 | Show | GitHub Exploit DB Packet Storm |
| 253126 | 10 | 危険 | サイバートラスト株式会社 XEmacs |
- | XEmacs の glyphs-eimage.c における整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2009-2688 | 2010-01-12 14:48 | 2009-08-5 | Show | GitHub Exploit DB Packet Storm |
| 253127 | 6.8 | 警告 | IBM | - | IBM WebSphere Application Server (WAS) におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2009-2746 | 2010-01-12 14:48 | 2009-11-13 | Show | GitHub Exploit DB Packet Storm |
| 253128 | 5 | 警告 | アップル | - | Apple Safari におけるローカル HTML ファイルを読まれる脆弱性 |
CWE-Other
その他 |
CVE-2009-2842 | 2010-01-7 12:09 | 2009-11-11 | Show | GitHub Exploit DB Packet Storm |
| 253129 | 5.5 | 警告 | シックス・アパート株式会社 | - | Movable Type におけるアクセス制限回避の脆弱性 |
CWE-264
認可・権限・アクセス制御 |
- | 2010-01-6 15:01 | 2010-01-6 | Show | GitHub Exploit DB Packet Storm |
| 253130 | 9.3 | 危険 | マイクロソフト | - | Microsoft Office Word および Open XML File Format Converter における、任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-3135 | 2010-01-6 14:44 | 2009-11-10 | Show | GitHub Exploit DB Packet Storm |
Update Date:April 29, 2026, 4:51 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 213391 | 7.5 |
HIGH
Network |
f5 |
big-ip_advanced_firewall_manager big-ip_access_policy_manager big-ip_application_acceleration_manager big-ip_link_controller big-ip_policy_enforcement_manager big-ip_webaccelerator … |
On BIG-IP 15.0.0 and 14.1.0-14.1.0.6, under certain conditions, network protections on the management port do not follow current best practices. |
NVD-CWE-noinfo
|
CVE-2019-6664 | 2024-11-21 13:46 | 2019-11-16 | Show | GitHub Exploit DB Packet Storm |
| 213392 | 5.5 |
MEDIUM
Local |
f5 |
big-ip_local_traffic_manager big-ip_advanced_firewall_manager big-ip_application_acceleration_manager big-ip_analytics big-ip_access_policy_manager big-ip_application_security_manager<… |
The BIG-IP 15.0.0-15.0.1, 14.0.0-14.1.2.2, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.5.1-11.6.5.1, BIG-IQ 7.0.0, 6.0.0-6.1.0, and 5.2.0-5.4.0, iWorkflow 2.3.0, and Enterprise Manager 3.1.1 configuration… |
CWE-20
Improper Input Validation |
CVE-2019-6663 | 2024-11-21 13:46 | 2019-11-16 | Show | GitHub Exploit DB Packet Storm |
| 213393 | 6.5 |
MEDIUM
Network |
f5 |
big-ip_access_policy_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_application_acceleration_manager big-ip_application_security_manager big-ip_domain_name_system … |
On BIG-IP 13.1.0-13.1.1.4, sensitive information is logged into the local log files and/or remote logging targets when restjavad processes an invalid request. Users with access to the log files would… |
CWE-532
Inclusion of Sensitive Information in Log Files |
CVE-2019-6662 | 2024-11-21 13:46 | 2019-11-16 | Show | GitHub Exploit DB Packet Storm |
| 213394 | 7.5 |
HIGH
Network |
f5 |
big-ip_access_policy_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_application_acceleration_manager big-ip_application_security_manager big-ip_domain_name_system … |
On BIG-IP 14.1.0-14.1.2, 14.0.0-14.0.1, and 13.1.0-13.1.1, undisclosed HTTP requests may consume excessive amounts of systems resources which may lead to a denial of service. |
CWE-400
Uncontrolled Resource Consumption |
CVE-2019-6660 | 2024-11-21 13:46 | 2019-11-16 | Show | GitHub Exploit DB Packet Storm |
| 213395 | 7.5 |
HIGH
Network |
f5 |
big-ip_local_traffic_manager big-ip_application_acceleration_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_access_policy_manager big-ip_application_security_manager<… |
On version 14.0.0-14.1.0.1, BIG-IP virtual servers with TLSv1.3 enabled may experience a denial of service due to undisclosed incoming messages. |
NVD-CWE-noinfo
|
CVE-2019-6659 | 2024-11-21 13:46 | 2019-11-16 | Show | GitHub Exploit DB Packet Storm |
| 213396 | 9.8 |
CRITICAL
Network |
lenovo |
510-15ikl_firmware 510s-08ikl_firmware ideacentre_300-20ish_firmware ideacentre_300s-11ish_firmware ideacentre_310s-08asr_firmware ideacentre_310s-08igm_firmware ideacentre_510-15ic… |
The BIOS tamper detection mechanism was not triggered in Lenovo ThinkPad T460p, BIOS versions up to R07ET90W, and T470p, BIOS versions up to R0FET50W, which may allow for unauthorized access. |
NVD-CWE-noinfo
|
CVE-2019-6188 | 2024-11-21 13:46 | 2019-11-13 | Show | GitHub Exploit DB Packet Storm |
| 213397 | 6.4 |
MEDIUM
Local |
lenovo |
510-15ikl_firmware 510s-08ikl_firmware ideacentre_300-20ish_firmware ideacentre_300s-11ish_firmware ideacentre_310s-08asr_firmware ideacentre_310s-08igm_firmware ideacentre_510-15ic… |
A potential vulnerability in the SMI callback function used in Legacy USB driver using passed parameter without sufficient checking in some Lenovo ThinkPad models may allow arbitrary code execution. |
NVD-CWE-noinfo
|
CVE-2019-6172 | 2024-11-21 13:46 | 2019-11-13 | Show | GitHub Exploit DB Packet Storm |
| 213398 | 6.4 |
MEDIUM
Local |
lenovo |
510-15ikl_firmware 510s-08ikl_firmware ideacentre_300-20ish_firmware ideacentre_300s-11ish_firmware ideacentre_310s-08asr_firmware ideacentre_310s-08igm_firmware ideacentre_510-15ic… |
A potential vulnerability in the SMI callback function used in the Legacy USB driver using boot services structure in runtime phase in some Lenovo ThinkPad models may allow arbitrary code execution. |
NVD-CWE-noinfo
|
CVE-2019-6170 | 2024-11-21 13:46 | 2019-11-13 | Show | GitHub Exploit DB Packet Storm |
| 213399 | 5.2 |
MEDIUM
Physics |
hp |
d9l63a_firmware d9l64a_firmware t0g70a_firmware j3p65a_firmware j3p68a_firmware j6u57a_firmware j6u57b_firmware j9v80a_firmware j9v80b_firmware j6u55a_firmware j6u55d_fi… |
For the printers listed a maliciously crafted print file might cause certain HP Inkjet printers to assert. Under certain circumstances, the printer produces a core dump to a local device. |
NVD-CWE-noinfo
|
CVE-2019-6337 | 2024-11-21 13:46 | 2019-11-8 | Show | GitHub Exploit DB Packet Storm |
| 213400 | 6.1 |
MEDIUM
Network |
forcepoint |
email_security security_manager |
It has been reported that XSS is possible in Forcepoint Email Security, versions 8.5 and 8.5.3. It is strongly recommended that you apply the relevant hotfix in order to remediate this issue. |
CWE-79
Cross-site Scripting |
CVE-2019-6142 | 2024-11-21 13:46 | 2019-11-6 | Show | GitHub Exploit DB Packet Storm |