|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 7, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 254421 | 10 | 危険 | サイバートラスト株式会社 XEmacs |
- | XEmacs の glyphs-eimage.c における整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2009-2688 | 2010-01-12 14:48 | 2009-08-5 | Show | GitHub Exploit DB Packet Storm |
| 254422 | 6.8 | 警告 | IBM | - | IBM WebSphere Application Server (WAS) におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2009-2746 | 2010-01-12 14:48 | 2009-11-13 | Show | GitHub Exploit DB Packet Storm |
| 254423 | 5 | 警告 | アップル | - | Apple Safari におけるローカル HTML ファイルを読まれる脆弱性 |
CWE-Other
その他 |
CVE-2009-2842 | 2010-01-7 12:09 | 2009-11-11 | Show | GitHub Exploit DB Packet Storm |
| 254424 | 5.5 | 警告 | シックス・アパート株式会社 | - | Movable Type におけるアクセス制限回避の脆弱性 |
CWE-264
認可・権限・アクセス制御 |
- | 2010-01-6 15:01 | 2010-01-6 | Show | GitHub Exploit DB Packet Storm |
| 254425 | 9.3 | 危険 | マイクロソフト | - | Microsoft Office Word および Open XML File Format Converter における、任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-3135 | 2010-01-6 14:44 | 2009-11-10 | Show | GitHub Exploit DB Packet Storm |
| 254426 | 5 | 警告 | トレンドマイクロ 日本電気 Apache Software Foundation 富士通 サイバートラスト株式会社 サン・マイクロシステムズ ヒューレット・パッカード レッドハット |
- | Apache Tomcat の Apache HTTP Server との組合せによるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2007-0450 | 2010-01-6 14:43 | 2007-03-16 | Show | GitHub Exploit DB Packet Storm |
| 254427 | 9.3 | 危険 | マイクロソフト | - | Microsoft Office Excel および Open XML File Format Converter におけるオブジェクトを含むスプレッドシートの処理に関する任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-3133 | 2010-01-5 16:18 | 2009-11-10 | Show | GitHub Exploit DB Packet Storm |
| 254428 | 9.3 | 危険 | マイクロソフト | - | Microsoft Office Excel および Open XML File Format Converter における BIFF レコードの処理に関する任意のコードを実行される脆弱性 |
CWE-119
バッファエラー |
CVE-2009-3130 | 2010-01-5 16:18 | 2009-11-10 | Show | GitHub Exploit DB Packet Storm |
| 254429 | 9.3 | 危険 | マイクロソフト | - | 複数の Microsoft 製品におけるエクセルファイルのフォーマットの処理に関する任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-3134 | 2010-01-5 16:18 | 2009-11-10 | Show | GitHub Exploit DB Packet Storm |
| 254430 | 9.3 | 危険 | マイクロソフト | - | 複数の Microsoft 製品における計算式を含むスプレッドシートの処理に関する任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-3132 | 2010-01-5 16:18 | 2009-11-10 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 7, 2026, 4:22 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 223601 | 7.8 |
HIGH
Local |
qualcomm |
qcs605_firmware sdm439_firmware sdx24_firmware |
Out of bound access while allocating memory for an array in camera due to improper validation of elements parameters in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivi… |
CWE-129
Improper Validation of Array Index |
CVE-2019-14046 | 2024-11-21 13:25 | 2020-02-7 | Show | GitHub Exploit DB Packet Storm |
| 223602 | 7.8 |
HIGH
Local |
qualcomm |
qcs605_firmware sdm439_firmware sdm630_firmware sdm636_firmware sdm660_firmware sdx24_firmware |
Out of bound access due to access of uninitialized memory segment in an array of pointers while normal camera open close in Snapdragon Consumer IOT, Snapdragon Mobile in QCS605, SDM439, SDM630, SDM63… |
CWE-129 CWE-908 Improper Validation of Array Index Use of Uninitialized Resource |
CVE-2019-14044 | 2024-11-21 13:25 | 2020-02-7 | Show | GitHub Exploit DB Packet Storm |
| 223603 | 7.8 |
HIGH
Local |
qualcomm |
apq8009_firmware apq8017_firmware apq8053_firmware apq8096au_firmware apq8098_firmware mdm9206_firmware mdm9207c_firmware mdm9607_firmware mdm9640_firmware mdm9650_firmware… |
Possibility of use-after-free and double free because of not marking buffer as NULL after freeing can lead to dangling pointer access in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Elect… |
CWE-415 CWE-416 Double Free Use After Free |
CVE-2019-14055 | 2024-11-21 13:25 | 2020-02-7 | Show | GitHub Exploit DB Packet Storm |
| 223604 | 7.8 |
HIGH
Local |
qualcomm |
apq8017_firmware apq8053_firmware apq8096au_firmware mdm9206_firmware mdm9207c_firmware mdm9607_firmware mdm9640_firmware msm8953_firmware qcn7605_firmware qcs605_firmware<… |
Stage-2 fault will occur while writing to an ION system allocation which has been assigned to non-HLOS memory which is non-standard in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electro… |
CWE-617
Reachable Assertion |
CVE-2019-14049 | 2024-11-21 13:25 | 2020-02-7 | Show | GitHub Exploit DB Packet Storm |
| 223605 | 7.8 |
HIGH
Local |
qualcomm |
apq8009_firmware apq8017_firmware apq8053_firmware apq8096au_firmware apq8098_firmware mdm9206_firmware mdm9207c_firmware md9607_firmware mdm9640_firmware mdm9650_firmware<… |
During listener modified response processing, a buffer overrun occurs due to lack of buffer size verification when updating message buffer with physical address information in Snapdragon Auto, Snapdr… |
CWE-120
Classic Buffer Overflow |
CVE-2019-14041 | 2024-11-21 13:25 | 2020-02-7 | Show | GitHub Exploit DB Packet Storm |
| 223606 | 7.8 |
HIGH
Local |
qualcomm |
apq8009_firmware apq8017_firmware apq8053_firmware apq8096au_firmware apq8098_firmware mdm9150_firmware mdm9206_firmware mdm9207c_firmware mdm9607_firmware mdm9640_firmware… |
Using memory after being freed in qsee due to wrong implementation can lead to unexpected behavior such as execution of unknown code in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, S… |
CWE-416
Use After Free |
CVE-2019-14040 | 2024-11-21 13:25 | 2020-02-7 | Show | GitHub Exploit DB Packet Storm |
| 223607 | 7.8 |
HIGH
Local |
qualcomm |
apq8053_firmware apq8096au_firmware apq8098_firmware msm8909w_firmware msm8917_firmware msm8920_firmware msm8937_firmware msm8940_firmware msm8953_firmware msm8996au_firmwa… |
APKs without proper permission may bind to CallEnhancementService and can lead to unauthorized access to call status in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Indust… |
CWE-276
Incorrect Default Permissions |
CVE-2019-14002 | 2024-11-21 13:25 | 2020-02-7 | Show | GitHub Exploit DB Packet Storm |
| 223608 | 7.8 |
HIGH
Local |
rockwellautomation | arena_simulation | A maliciously crafted program file opened by an unsuspecting user of Rockwell Automation Arena Simulation Software version 16.00.00 and earlier may result in the limited exposure of information relat… |
NVD-CWE-Other
|
CVE-2019-13521 | 2024-11-21 13:25 | 2020-01-28 | Show | GitHub Exploit DB Packet Storm |
| 223609 | 7.8 |
HIGH
Local |
rockwellautomation | arena_simulation | A maliciously crafted program file opened by an unsuspecting user of Rockwell Automation Arena Simulation Software version 16.00.00 and earlier may result in the limited exposure of information relat… |
CWE-843
Type Confusion |
CVE-2019-13519 | 2024-11-21 13:25 | 2020-01-28 | Show | GitHub Exploit DB Packet Storm |
| 223610 | 7.8 |
HIGH
Local |
qualcomm |
apq8064_firmware apq8096au_firmware ipq4019_firmware ipq8064_firmware ipq8074_firmware mdm9607_firmware mdm9615_firmware mdm9640_firmware msm8996au_firmware qcn7605_firmware |
Possible buffer overflow issue in error processing due to improper validation of array index value in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdrago… |
CWE-129
Improper Validation of Array Index |
CVE-2019-14036 | 2024-11-21 13:25 | 2020-01-21 | Show | GitHub Exploit DB Packet Storm |