|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 18, 2026, 4:01 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 254151 | 4.3 | 警告 | シマンテック | - | Symantec Norton Mobile Security for Android における重要な情報を取得される脆弱性 |
CWE-255
証明書・パスワード管理 |
CVE-2010-0113 | 2011-02-21 14:55 | 2010-11-15 | Show | GitHub Exploit DB Packet Storm |
| 254152 | 4.3 | 警告 | - | Android の Dalvik API におけるサービス運用妨害 (DoS) 脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-3698 | 2011-02-21 14:54 | 2009-10-14 | Show | GitHub Exploit DB Packet Storm | |
| 254153 | 5 | 警告 | CollabNet, Inc. | - | CollabNet ScrumWorks Basic Server における認証情報取り扱いに関する問題 |
CWE-310
暗号の問題 |
CVE-2011-0410 | 2011-02-21 14:54 | 2011-01-24 | Show | GitHub Exploit DB Packet Storm |
| 254154 | 5 | 警告 | The PHP Group レッドハット |
- | Libmbfl の mb_strcut 関数における重要な情報を取得される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2010-4156 | 2011-02-18 15:07 | 2010-11-10 | Show | GitHub Exploit DB Packet Storm |
| 254155 | 6.8 | 警告 | The PHP Group サイバートラスト株式会社 レッドハット |
- | PHP の xml_utf8_decode 関数における整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2009-5016 | 2011-02-18 15:03 | 2010-11-12 | Show | GitHub Exploit DB Packet Storm |
| 254156 | 6.8 | 警告 | The PHP Group | - | PHP の set_magic_quotes_runtime 関数における SQL インジェクション攻撃を誘導される脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4700 | 2011-02-18 14:42 | 2010-07-1 | Show | GitHub Exploit DB Packet Storm |
| 254157 | 7.5 | 危険 | The PHP Group | - | PHP の iconv_mime_decode_headers 関数におけるスパムの検出を回避される脆弱性 |
CWE-189
数値処理の問題 |
CVE-2010-4699 | 2011-02-18 14:40 | 2010-09-28 | Show | GitHub Exploit DB Packet Storm |
| 254158 | 5 | 警告 | The PHP Group | - | PHP の GD 拡張モジュールにおけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2010-4698 | 2011-02-18 14:38 | 2010-12-7 | Show | GitHub Exploit DB Packet Storm |
| 254159 | 6.8 | 警告 | The PHP Group | - | PHP の Zend Engine におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2010-4697 | 2011-02-18 14:35 | 2010-09-18 | Show | GitHub Exploit DB Packet Storm |
| 254160 | 1 | 注意 | サン・マイクロシステムズ | - | Oracle Sun Java System Portal Server のプロキシにおける脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-4431 | 2011-02-18 14:30 | 2011-01-18 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 18, 2026, 4:12 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 219781 | 8.8 |
HIGH
Network |
libssh2 debian netapp opensuse redhat fedoraproject oracle |
libssh2 debian_linux ontap_select_deploy_administration_utility leap enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_tus … |
An integer overflow flaw which could lead to an out of bounds write was discovered in libssh2 before 1.8.1 in the way SSH_MSG_CHANNEL_REQUEST packets with an exit signal are parsed. A remote attacker… |
CWE-787 CWE-190 Out-of-bounds Write Integer Overflow or Wraparound |
CVE-2019-3857 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |
| 219782 | 8.8 |
HIGH
Network |
libssh2 debian netapp opensuse redhat fedoraproject oracle |
libssh2 debian_linux ontap_select_deploy_administration_utility leap enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_tus … |
An integer overflow flaw, which could lead to an out of bounds write, was discovered in libssh2 before 1.8.1 in the way keyboard prompt requests are parsed. A remote attacker who compromises a SSH se… |
CWE-787 CWE-190 Out-of-bounds Write Integer Overflow or Wraparound |
CVE-2019-3856 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |
| 219783 | 9.8 |
CRITICAL
Network |
atlassian |
confluence confluence_server |
The WebDAV endpoint in Atlassian Confluence Server and Data Center before version 6.6.7 (the fixed version for 6.6.x), from version 6.7.0 before 6.8.5 (the fixed version for 6.8.x), and from version … |
CWE-918
Server-Side Request Forgery (SSRF) |
CVE-2019-3395 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |
| 219784 | 5.5 |
MEDIUM
Local |
artifex redhat fedoraproject opensuse debian |
ghostscript enterprise_linux_desktop enterprise_linux_workstation enterprise_linux enterprise_linux_server enterprise_linux_server_tus enterprise_linux_server_eus enterprise_linu… |
It was found that the forceput operator could be extracted from the DefineResource method in ghostscript before 9.27. A specially crafted PostScript file could use this flaw in order to, for example,… |
NVD-CWE-Other
|
CVE-2019-3838 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |
| 219785 | 5.5 |
MEDIUM
Local |
artifex redhat fedoraproject debian opensuse |
ghostscript enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_tus enterprise_linux_server_eus enterprise_linux_server_aus ansi… |
It was found that the superexec operator was available in the internal dictionary in ghostscript before 9.27. A specially crafted PostScript file could use this flaw in order to, for example, have ac… |
CWE-862
Missing Authorization |
CVE-2019-3835 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |
| 219786 | 9.8 |
CRITICAL
Network |
atlassian |
confluence confluence_server |
The Widget Connector macro in Atlassian Confluence Server before version 6.6.12 (the fixed version for 6.6.x), from version 6.7.0 before 6.12.3 (the fixed version for 6.12.x), from version 6.13.0 bef… |
CWE-22
Path Traversal |
CVE-2019-3396 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |
| 219787 | 6.8 |
MEDIUM
Network |
kubevirt | containerized_data_importer | Kubevirt/virt-cdi-importer, versions 1.4.0 to 1.5.3 inclusive, were reported to disable TLS certificate validation when importing data into PVCs from container registries. This could enable man-in-th… |
CWE-295
Improper Certificate Validation |
CVE-2019-3841 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |
| 219788 | 6.7 |
MEDIUM
Local |
ovirt redhat |
vdsm gluster_storage |
A vulnerability was discovered in vdsm, version 4.19 through 4.30.3 and 4.30.5 through 4.30.8. The systemd_run function exposed to the vdsm system user could be abused to execute arbitrary commands a… |
NVD-CWE-Other
|
CVE-2019-3831 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |
| 219789 | 8.8 |
HIGH
Network |
libssh2 debian netapp opensuse redhat |
libssh2 debian_linux ontap_select_deploy_administration_utility leap enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_tus … |
A flaw was found in libssh2 before 1.8.1. A server could send a multiple keyboard interactive response messages whose total length are greater than unsigned char max characters. This value is used as… |
CWE-787
Out-of-bounds Write |
CVE-2019-3863 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |
| 219790 | 7.0 |
HIGH
Local |
gnome | gvfs | An incorrect permission check in the admin backend in gvfs before version 1.39.4 was found that allows reading and modify arbitrary files by privileged users without asking for password when no authe… |
CWE-863
Incorrect Authorization |
CVE-2019-3827 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |