|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":April 28, 2026, 4 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 253141 | 9.3 | 危険 | マイクロソフト | - | Microsoft Windows の kernel における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-2514 | 2010-01-4 15:24 | 2009-11-10 | Show | GitHub Exploit DB Packet Storm |
| 253142 | 6.8 | 警告 | マイクロソフト | - | Microsoft Windows の kernel の Graphics Device Interface (GDI) における権限を取得される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2009-2513 | 2010-01-4 15:24 | 2009-11-10 | Show | GitHub Exploit DB Packet Storm |
| 253143 | 6.8 | 警告 | マイクロソフト | - | Microsoft Windows の kernel における権限を取得される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2009-1127 | 2010-01-4 15:24 | 2009-11-10 | Show | GitHub Exploit DB Packet Storm |
| 253144 | 10 | 危険 | マイクロソフト | - | Microsoft Windows の License Logging Server (llssrv.exe) における任意のコードを実行される脆弱性 |
CWE-119
バッファエラー |
CVE-2009-2523 | 2010-01-4 15:24 | 2009-11-10 | Show | GitHub Exploit DB Packet Storm |
| 253145 | 9.3 | 危険 | マイクロソフト | - | Microsoft Windows の Web Services on Devices API (WSDAPI) における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-2512 | 2010-01-4 15:23 | 2009-11-10 | Show | GitHub Exploit DB Packet Storm |
| 253146 | 10 | 危険 | アップル VMware サン・マイクロシステムズ |
- | Sun Java SE の Provider クラスにおける詳細不明な脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-2722 | 2010-01-4 14:56 | 2009-08-10 | Show | GitHub Exploit DB Packet Storm |
| 253147 | 10 | 危険 | アップル VMware サン・マイクロシステムズ |
- | Sun Java SE の Provider クラスにおける詳細不明な脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-2723 | 2010-01-4 14:55 | 2009-08-10 | Show | GitHub Exploit DB Packet Storm |
Update Date:April 28, 2026, 4:09 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 213061 | 6.5 |
MEDIUM
Network |
digium | asterisk | An Integer Signedness issue (for a return code) in the res_pjsip_sdp_rtp module in Digium Asterisk versions 15.7.1 and earlier and 16.1.1 and earlier allows remote authenticated users to crash Asteri… |
CWE-190
Integer Overflow or Wraparound |
CVE-2019-7251 | 2024-11-21 13:47 | 2019-03-29 | Show | GitHub Exploit DB Packet Storm |
| 213062 | 7.5 |
HIGH
Network |
z.cash | zcash | Zcash, before the Sapling network upgrade (2018-10-28), had a counterfeiting vulnerability. A key-generation process, during evaluation of polynomials related to a to-be-proven statement, produced ce… |
CWE-754
Improper Check for Unusual or Exceptional Conditions |
CVE-2019-7167 | 2024-11-21 13:47 | 2019-03-27 | Show | GitHub Exploit DB Packet Storm |
| 213063 | 6.1 |
MEDIUM
Network |
wpsupportplus | wp_support_plus_responsive_ticket_system | A stored cross-site scripting (XSS) vulnerability in the submit_ticket.php module in the WP Support Plus Responsive Ticket System plugin 9.1.1 for WordPress allows remote attackers to inject arbitrar… |
CWE-79
Cross-site Scripting |
CVE-2019-7299 | 2024-11-21 13:47 | 2019-03-22 | Show | GitHub Exploit DB Packet Storm |
| 213064 | 5.4 |
MEDIUM
Network |
invoiceplane | invoiceplane | InvoicePlane 1.5 has stored XSS via the index.php/invoices/ajax/save invoice_password parameter, aka the "PDF password" field to the "Create Invoice" option. The XSS payload is rendered at an index.p… |
CWE-79
Cross-site Scripting |
CVE-2019-7223 | 2024-11-21 13:47 | 2019-03-22 | Show | GitHub Exploit DB Packet Storm |
| 213065 | 5.5 |
MEDIUM
Local |
linux fedoraproject opensuse debian canonical netapp redhat |
linux_kernel fedora leap debian_linux ubuntu_linux element_software_management_node active_iq_performance_analytics_services enterprise_linux_desktop enterprise_linux_workstat… |
The KVM implementation in the Linux kernel through 4.20.5 has an Information Leak. |
NVD-CWE-noinfo
|
CVE-2019-7222 | 2024-11-21 13:47 | 2019-03-22 | Show | GitHub Exploit DB Packet Storm |
| 213066 | 7.8 |
HIGH
Local |
linux opensuse fedoraproject debian canonical netapp redhat |
linux_kernel leap fedora debian_linux ubuntu_linux element_software_management_node active_iq_performance_analytics_services enterprise_linux_desktop enterprise_linux_workstat… |
The KVM implementation in the Linux kernel through 4.20.5 has a Use-after-Free. |
CWE-416
Use After Free |
CVE-2019-7221 | 2024-11-21 13:47 | 2019-03-22 | Show | GitHub Exploit DB Packet Storm |
| 213067 | 7.5 |
HIGH
Network |
zohocorp | manageengine_adselfservice_plus | An issue was discovered in Zoho ManageEngine ADSelfService Plus 5.x through build 5704. It uses fixed ciphering keys to protect information, giving the capacity for an attacker to decipher any protec… |
CWE-798
Use of Hard-coded Credentials |
CVE-2019-7161 | 2024-11-21 13:47 | 2019-03-22 | Show | GitHub Exploit DB Packet Storm |
| 213068 | 7.5 |
HIGH
Network |
genivia | gsoap | Sricam IP CCTV cameras are vulnerable to denial of service via multiple incomplete HTTP requests because the web server (based on gSOAP 2.8.x) is configured for an iterative queueing approach (aka no… |
NVD-CWE-noinfo
|
CVE-2019-6973 | 2024-11-21 13:47 | 2019-03-22 | Show | GitHub Exploit DB Packet Storm |
| 213069 | 7.5 |
HIGH
Network |
moodle | moodle | Moodle 3.5.x before 3.5.4 allows SSRF. |
CWE-918
Server-Side Request Forgery (SSRF) |
CVE-2019-6970 | 2024-11-21 13:47 | 2019-03-22 | Show | GitHub Exploit DB Packet Storm |
| 213070 | 8.8 |
HIGH
Network |
airties | air_5341_firmware | AirTies Air5341 1.0.0.12 devices allow cgi-bin/login CSRF. |
CWE-352
Origin Validation Error |
CVE-2019-6967 | 2024-11-21 13:47 | 2019-03-22 | Show | GitHub Exploit DB Packet Storm |