|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 13, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 255041 | 9.3 | 危険 | VMware | - | 複数の VMware 製品の VNnc コーデックにおけるヒープベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-0909 | 2010-03-23 14:10 | 2010-04-3 | Show | GitHub Exploit DB Packet Storm |
| 255042 | 6.4 | 警告 | VMware | - | VMware ACE の ACE 共有フォルダ実装における無効にされた共有フォルダを有効にされる脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-0908 | 2010-03-23 14:10 | 2010-04-3 | Show | GitHub Exploit DB Packet Storm |
| 255043 | 2.1 | 注意 | VMware | - | 複数の VMware 製品の VI Client におけるパスワードを取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2009-0518 | 2010-03-23 14:10 | 2010-04-3 | Show | GitHub Exploit DB Packet Storm |
| 255044 | 4.4 | 警告 | KVM レッドハット |
- | KVM の x86 エミュレータにおける権限昇格の脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2010-0419 | 2010-03-23 14:09 | 2010-03-1 | Show | GitHub Exploit DB Packet Storm |
| 255045 | 9.3 | 危険 | マイクロソフト | - | 複数の Microsoft 製品における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2010-0263 | 2010-03-19 10:28 | 2010-03-9 | Show | GitHub Exploit DB Packet Storm |
| 255046 | 9.3 | 危険 | マイクロソフト | - | 複数の Microsoft 製品における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2010-0262 | 2010-03-19 10:28 | 2010-03-9 | Show | GitHub Exploit DB Packet Storm |
| 255047 | 9.3 | 危険 | マイクロソフト | - | 複数の Microsoft 製品におけるヒープベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2010-0261 | 2010-03-19 10:28 | 2010-03-9 | Show | GitHub Exploit DB Packet Storm |
| 255048 | 9.3 | 危険 | マイクロソフト | - | 複数の Microsoft 製品におけるヒープベースのバッファオーバーフローの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2010-0260 | 2010-03-19 10:28 | 2010-03-9 | Show | GitHub Exploit DB Packet Storm |
| 255049 | 9.3 | 危険 | マイクロソフト | - | 複数の Microsoft 製品における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2010-0258 | 2010-03-19 10:27 | 2010-03-9 | Show | GitHub Exploit DB Packet Storm |
| 255050 | 9.3 | 危険 | マイクロソフト | - | 複数の Microsoft 製品における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2010-0264 | 2010-03-19 10:27 | 2010-03-9 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 13, 2026, 5:05 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 196491 | 7.5 |
HIGH
Network |
trendmicro | interscan_web_security_virtual_appliance | A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to send requests that appear to come from the localhost which could expose the product's admin … |
CWE-918
Server-Side Request Forgery (SSRF) |
CVE-2020-8464 | 2024-11-21 14:38 | 2020-12-18 | Show | GitHub Exploit DB Packet Storm |
| 196492 | 7.5 |
HIGH
Network |
trendmicro | interscan_web_security_virtual_appliance | A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to bypass a global authorization check for anonymous users by manipulating request paths. |
CWE-22
Path Traversal |
CVE-2020-8463 | 2024-11-21 14:38 | 2020-12-18 | Show | GitHub Exploit DB Packet Storm |
| 196493 | 4.8 |
MEDIUM
Network |
trendmicro | interscan_web_security_virtual_appliance | A cross-site scripting (XSS) vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to tamper with the web interface of the product. |
CWE-79
Cross-site Scripting |
CVE-2020-8462 | 2024-11-21 14:38 | 2020-12-18 | Show | GitHub Exploit DB Packet Storm |
| 196494 | 8.8 |
HIGH
Network |
trendmicro | interscan_web_security_virtual_appliance | A CSRF protection bypass vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to get a victim's browser to send a specifically encoded request without… |
CWE-352
Origin Validation Error |
CVE-2020-8461 | 2024-11-21 14:38 | 2020-12-18 | Show | GitHub Exploit DB Packet Storm |
| 196495 | 7.5 |
HIGH
Network |
haxx fedoraproject debian netapp apple siemens oracle splunk |
libcurl fedora debian_linux clustered_data_ontap solidfire hci_management_node hci_bootstrap_os hci_storage_node_firmware mac_os_x macos simatic_tim_1531_irc_firmware | curl 7.41.0 through 7.73.0 is vulnerable to an improper check for certificate revocation due to insufficient verification of the OCSP response. |
CWE-295
Improper Certificate Validation |
CVE-2020-8286 | 2024-11-21 14:38 | 2020-12-15 | Show | GitHub Exploit DB Packet Storm |
| 196496 | 7.5 |
HIGH
Network |
haxx debian fedoraproject netapp apple oracle fujitsu siemens splunk |
libcurl debian_linux fedora clustered_data_ontap solidfire hci_management_node hci_bootstrap_os hci_storage_node_firmware mac_os_x macos peoplesoft_enterprise_peopletool… |
curl 7.21.0 to and including 7.73.0 is vulnerable to uncontrolled recursion due to a stack overflow issue in FTP wildcard match parsing. |
CWE-787 CWE-674 Out-of-bounds Write Uncontrolled Recursion |
CVE-2020-8285 | 2024-11-21 14:38 | 2020-12-15 | Show | GitHub Exploit DB Packet Storm |
| 196497 | 3.7 |
LOW
Network |
haxx fedoraproject debian netapp apple oracle fujitsu siemens splunk |
curl fedora debian_linux clustered_data_ontap solidfire hci_management_node hci_storage_node hci_bootstrap_os mac_os_x macos peoplesoft_enterprise_peopletools communi… |
A malicious server can use the FTP PASV response to trick curl 7.73.0 and earlier into connecting back to a given IP address and port, and this way potentially make curl extract information about ser… |
NVD-CWE-noinfo
|
CVE-2020-8284 | 2024-11-21 14:38 | 2020-12-15 | Show | GitHub Exploit DB Packet Storm |
| 196498 | 8.8 |
HIGH
Network |
citrix |
xendesktop xenapp virtual_apps_and_desktops |
An authorised user on a Windows host running Citrix Universal Print Server can perform arbitrary command execution as SYSTEM in CVAD versions before 2009, 1912 LTSR CU1 hotfixes CTX285870 and CTX2861… |
CWE-269
Improper Privilege Management |
CVE-2020-8283 | 2024-11-21 14:38 | 2020-12-15 | Show | GitHub Exploit DB Packet Storm |
| 196499 | 8.8 |
HIGH
Network |
ui |
edgemax_edgepower_24v_firmware edgemax_edgepower_54v_firmware |
A security issue was found in EdgePower 24V/54V firmware v1.7.0 and earlier where, due to missing CSRF protections, an attacker would have been able to perform unauthorized remote code execution. |
CWE-352
Origin Validation Error |
CVE-2020-8282 | 2024-11-21 14:38 | 2020-12-15 | Show | GitHub Exploit DB Packet Storm |
| 196500 | 7.5 |
HIGH
Network |
citrix | gateway_plug-in | Improper privilege management on services run by Citrix Gateway Plug-in for Windows, versions before and including 13.0-61.48 and 12.1-58.15, allows an attacker to modify arbitrary files. |
CWE-269
Improper Privilege Management |
CVE-2020-8258 | 2024-11-21 14:38 | 2020-12-15 | Show | GitHub Exploit DB Packet Storm |