|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 21, 2026, 2 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 254971 | 5 | 警告 | The PHP Group サイバートラスト株式会社 ターボリナックス レッドハット |
- | PHP におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2010-1917 | 2010-12-15 15:27 | 2010-05-11 | Show | GitHub Exploit DB Packet Storm |
| 254972 | 5 | 警告 | The PHP Group アップル ターボリナックス サイバートラスト株式会社 レッドハット |
- | PHP の xmlrpc 拡張におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-Other
その他 |
CVE-2010-0397 | 2010-12-15 15:27 | 2010-03-16 | Show | GitHub Exploit DB Packet Storm |
| 254973 | 6.4 | 警告 | The PHP Group サイバートラスト株式会社 レッドハット |
- | PHP の Linear Congruential Generator における値を推測される脆弱性 |
CWE-310
暗号の問題 |
CVE-2010-1128 | 2010-12-15 15:26 | 2010-03-26 | Show | GitHub Exploit DB Packet Storm |
| 254974 | 6.9 | 警告 | GNU Project 日本電気 ターボリナックス サイバートラスト株式会社 レッドハット |
- | GNU Libtool の libltdl における権限昇格の脆弱性 |
CWE-DesignError
|
CVE-2009-3736 | 2010-12-15 15:26 | 2009-11-16 | Show | GitHub Exploit DB Packet Storm |
| 254975 | 6.4 | 警告 | アップル 日本電気 Fetchmail Project |
- | fetchmail における任意の SSL サーバになりすまされる脆弱性 |
CWE-310
暗号の問題 |
CVE-2009-2666 | 2010-12-15 15:25 | 2009-08-6 | Show | GitHub Exploit DB Packet Storm |
| 254976 | 4.3 | 警告 | アップル | - | Apple Safari の WebKit におけるロケーションバーの URL を偽装される脆弱性 |
CWE-Other
その他 |
CVE-2010-3810 | 2010-12-15 14:42 | 2010-11-22 | Show | GitHub Exploit DB Packet Storm |
| 254977 | 9.3 | 危険 | アップル | - | Apple Safari の WebKit における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2010-3809 | 2010-12-15 14:39 | 2010-11-22 | Show | GitHub Exploit DB Packet Storm |
| 254978 | 9.3 | 危険 | アップル | - | Apple Safari の WebKit における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2010-3808 | 2010-12-15 14:37 | 2010-11-22 | Show | GitHub Exploit DB Packet Storm |
| 254979 | 9.3 | 危険 | アップル | - | Apple Safari の WebKit 内にある JavaScript 実装における整数アンダーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2010-3805 | 2010-12-15 14:32 | 2010-11-22 | Show | GitHub Exploit DB Packet Storm |
| 254980 | 5 | 警告 | アップル | - | Apple Safari の WebKit 内にある JavaScript 実装におけるユーザを追跡可能な脆弱性 |
CWE-310
暗号の問題 |
CVE-2010-3804 | 2010-12-15 14:29 | 2010-11-22 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 21, 2026, 4:10 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 220241 | 9.1 |
CRITICAL
Network |
libssh2 debian netapp opensuse |
libssh2 debian_linux ontap_select_deploy_administration_utility leap |
An out of bounds read flaw was discovered in libssh2 before 1.8.1 in the way SFTP packets with empty payloads are parsed. A remote attacker who compromises a SSH server may be able to cause a Denial … |
CWE-125
Out-of-bounds Read |
CVE-2019-3860 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |
| 220242 | 8.8 |
HIGH
Network |
libssh2 debian netapp opensuse redhat fedoraproject oracle |
libssh2 debian_linux ontap_select_deploy_administration_utility leap enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_tus … |
An integer overflow flaw which could lead to an out of bounds write was discovered in libssh2 before 1.8.1 in the way SSH_MSG_CHANNEL_REQUEST packets with an exit signal are parsed. A remote attacker… |
CWE-787 CWE-190 Out-of-bounds Write Integer Overflow or Wraparound |
CVE-2019-3857 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |
| 220243 | 8.8 |
HIGH
Network |
libssh2 debian netapp opensuse redhat fedoraproject oracle |
libssh2 debian_linux ontap_select_deploy_administration_utility leap enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_tus … |
An integer overflow flaw, which could lead to an out of bounds write, was discovered in libssh2 before 1.8.1 in the way keyboard prompt requests are parsed. A remote attacker who compromises a SSH se… |
CWE-787 CWE-190 Out-of-bounds Write Integer Overflow or Wraparound |
CVE-2019-3856 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |
| 220244 | 9.8 |
CRITICAL
Network |
atlassian |
confluence confluence_server |
The WebDAV endpoint in Atlassian Confluence Server and Data Center before version 6.6.7 (the fixed version for 6.6.x), from version 6.7.0 before 6.8.5 (the fixed version for 6.8.x), and from version … |
CWE-918
Server-Side Request Forgery (SSRF) |
CVE-2019-3395 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |
| 220245 | 5.5 |
MEDIUM
Local |
artifex redhat fedoraproject opensuse debian |
ghostscript enterprise_linux_desktop enterprise_linux_workstation enterprise_linux enterprise_linux_server enterprise_linux_server_tus enterprise_linux_server_eus enterprise_linu… |
It was found that the forceput operator could be extracted from the DefineResource method in ghostscript before 9.27. A specially crafted PostScript file could use this flaw in order to, for example,… |
NVD-CWE-Other
|
CVE-2019-3838 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |
| 220246 | 5.5 |
MEDIUM
Local |
artifex redhat fedoraproject debian opensuse |
ghostscript enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_tus enterprise_linux_server_eus enterprise_linux_server_aus ansi… |
It was found that the superexec operator was available in the internal dictionary in ghostscript before 9.27. A specially crafted PostScript file could use this flaw in order to, for example, have ac… |
CWE-862
Missing Authorization |
CVE-2019-3835 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |
| 220247 | 9.8 |
CRITICAL
Network |
atlassian |
confluence confluence_server |
The Widget Connector macro in Atlassian Confluence Server before version 6.6.12 (the fixed version for 6.6.x), from version 6.7.0 before 6.12.3 (the fixed version for 6.12.x), from version 6.13.0 bef… |
CWE-22
Path Traversal |
CVE-2019-3396 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |
| 220248 | 6.8 |
MEDIUM
Network |
kubevirt | containerized_data_importer | Kubevirt/virt-cdi-importer, versions 1.4.0 to 1.5.3 inclusive, were reported to disable TLS certificate validation when importing data into PVCs from container registries. This could enable man-in-th… |
CWE-295
Improper Certificate Validation |
CVE-2019-3841 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |
| 220249 | 6.7 |
MEDIUM
Local |
ovirt redhat |
vdsm gluster_storage |
A vulnerability was discovered in vdsm, version 4.19 through 4.30.3 and 4.30.5 through 4.30.8. The systemd_run function exposed to the vdsm system user could be abused to execute arbitrary commands a… |
NVD-CWE-Other
|
CVE-2019-3831 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |
| 220250 | 8.8 |
HIGH
Network |
libssh2 debian netapp opensuse redhat |
libssh2 debian_linux ontap_select_deploy_administration_utility leap enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_tus … |
A flaw was found in libssh2 before 1.8.1. A server could send a multiple keyboard interactive response messages whose total length are greater than unsigned char max characters. This value is used as… |
CWE-787
Out-of-bounds Write |
CVE-2019-3863 | 2024-11-21 13:42 | 2019-03-26 | Show | GitHub Exploit DB Packet Storm |