|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 23, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 255951 | 2.1 | 注意 | サイバートラスト株式会社 MUSCLE レッドハット |
- | MUSCLE PCSC-Lite の MSGFunctionDemarshall 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-119
バッファエラー |
CVE-2009-4901 | 2010-08-10 18:50 | 2010-06-18 | Show | GitHub Exploit DB Packet Storm |
| 255952 | 7.6 | 危険 | ヒューレット・パッカード IBM オラクル |
- | Oracle Solaris の ToolTalk における脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-0083 | 2010-08-10 18:50 | 2010-07-13 | Show | GitHub Exploit DB Packet Storm |
| 255953 | 7.8 | 危険 | サイバートラスト株式会社 Avahi レッドハット |
- | Avahi の originates_from_local_legacy_unicast_socket 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2009-0758 | 2010-08-10 18:49 | 2009-03-3 | Show | GitHub Exploit DB Packet Storm |
| 255954 | 6.8 | 警告 | サン・マイクロシステムズ 68k.org |
- | audiofile の msadpcm.c におけるヒープベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2008-5824 | 2010-08-10 18:49 | 2009-01-2 | Show | GitHub Exploit DB Packet Storm |
| 255955 | 2.4 | 注意 | オラクル | - | Oracle Sun Java System Application Server および Oracle GlassFish Enterprise Server の GUI における脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-2397 | 2010-08-9 16:49 | 2010-07-13 | Show | GitHub Exploit DB Packet Storm |
| 255956 | 3 | 注意 | オラクル | - | Oracle Solaris Studio における脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-2374 | 2010-08-9 16:49 | 2010-07-13 | Show | GitHub Exploit DB Packet Storm |
| 255957 | 4.3 | 警告 | オラクル | - | Oracle OpenSSO Enterprise における脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-3762 | 2010-08-9 16:49 | 2010-07-13 | Show | GitHub Exploit DB Packet Storm |
| 255958 | 4.3 | 警告 | オラクル | - | Oracle OpenSSO Enterprise の OpenSSO コンポーネントにおける脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-3764 | 2010-08-9 16:48 | 2010-07-13 | Show | GitHub Exploit DB Packet Storm |
| 255959 | 4.3 | 警告 | オラクル | - | Oracle OpenSSO Enterprise の Access Manager / OpenSSO コンポーネントにおける脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-3763 | 2010-08-9 16:48 | 2010-07-13 | Show | GitHub Exploit DB Packet Storm |
| 255960 | 5 | 警告 | オラクル | - | Oracle Sun Convergence における脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-0914 | 2010-08-9 16:48 | 2010-07-13 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 23, 2026, 4:08 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 198531 | 6.7 |
MEDIUM
Local |
synaptics | smart_audio_uwp | An unquoted search path vulnerability was reported in versions prior to 1.0.83.0 of the Synaptics Smart Audio UWP app associated with the DCHU audio drivers on Lenovo platforms that could allow an ad… |
CWE-428
Unquoted Search Path or Element |
CVE-2020-8337 | 2024-11-21 14:38 | 2020-06-10 | Show | GitHub Exploit DB Packet Storm |
| 198532 | 6.8 |
MEDIUM
Physics |
lenovo |
thinkpad_e14_firmware thinkpad_e15_firmware thinkpad_r14_firmware thinkpad_s3_gen_2_firmware thinkpad_e490s_firmware thinkpad_s3_firmware thinkpad_e490_firmware thinkpad_e590_fir… |
Lenovo implemented Intel CSME Anti-rollback ARB protections on some ThinkPad models to prevent roll back of CSME Firmware in flash. |
NVD-CWE-noinfo
|
CVE-2020-8336 | 2024-11-21 14:38 | 2020-06-10 | Show | GitHub Exploit DB Packet Storm |
| 198533 | 6.8 |
MEDIUM
Physics |
lenovo |
thinkpad_t495s_firmware thinkpad_x395_firmware thinkpad_t495_firmware thinkpad_a485_firmware thinkpad_a285_firmware thinkpad_a475_firmware thinkpad_a275_firmware |
The BIOS tamper detection mechanism was not triggered in Lenovo ThinkPad T495s, X395, T495, A485, A285, A475, A275 which may allow for unauthorized access. |
CWE-754
Improper Check for Unusual or Exceptional Conditions |
CVE-2020-8334 | 2024-11-21 14:38 | 2020-06-10 | Show | GitHub Exploit DB Packet Storm |
| 198534 | 6.7 |
MEDIUM
Local |
lenovo |
330-14ast_firmware 330-15ast_firmware 330-17ast_firmware 340c-15api_firmware 340c-15ast_firmware 720s_touch-15ikb_firmware 720s-15ikb_firmware 730s-13iwl_firmware c640-iml_fir… |
A potential vulnerability in the SMI callback function used in the Legacy SD driver in some Lenovo ThinkPad, ThinkStation, and Lenovo Notebook models may allow arbitrary code execution. |
NVD-CWE-noinfo
|
CVE-2020-8323 | 2024-11-21 14:38 | 2020-06-10 | Show | GitHub Exploit DB Packet Storm |
| 198535 | 6.7 |
MEDIUM
Local |
lenovo |
330-14ast_firmware 330-15ast_firmware 330-17ast_firmware 340c-15api_firmware 340c-15ast_firmware 720s_touch-15ikb_firmware 720s-15ikb_firmware 730s-13iwl_firmware c640-iml_fir… |
A potential vulnerability in the SMI callback function used in the Legacy USB driver in some Lenovo Notebook and ThinkStation models may allow arbitrary code execution. |
NVD-CWE-noinfo
|
CVE-2020-8322 | 2024-11-21 14:38 | 2020-06-10 | Show | GitHub Exploit DB Packet Storm |
| 198536 | 6.7 |
MEDIUM
Local |
lenovo |
130-14ast_firmware 130-14ikb_firmware 130-15ast_firmware 130-15ikb_firmware 320c-15ikb_firmware 330-14igm_firmware 330-14ikb_firmware 330-14ikbr_firmware 330-15arr_firmware | A potential vulnerability in the SMI callback function used in the System Lock Preinstallation driver in some Lenovo Notebook and ThinkStation models may allow arbitrary code execution. |
NVD-CWE-noinfo
|
CVE-2020-8321 | 2024-11-21 14:38 | 2020-06-10 | Show | GitHub Exploit DB Packet Storm |
| 198537 | 6.8 |
MEDIUM
Physics |
lenovo |
thinkpad_11e_yoga_gen_6_firmware thinkpad_11e_firmware thinkpad_yoga_11e_3rd_gen_firmware thinkpad_yoga_11e_4th_gen_firmware thinkpad_yoga_11e_5th_gen_firmware thinkpad_13_2nd_gen_firm… |
An internal shell was included in BIOS image in some ThinkPad models that could allow escalation of privilege. |
CWE-269
Improper Privilege Management |
CVE-2020-8320 | 2024-11-21 14:38 | 2020-06-10 | Show | GitHub Exploit DB Packet Storm |
| 198538 | 9.9 |
CRITICAL
Network |
nextcloud | talk | A too lax check in Nextcloud Talk 6.0.4, 7.0.2 and 8.0.7 allowed a code injection when a not correctly sanitized talk command was added by an administrator. |
CWE-94
Code Injection |
CVE-2020-8180 | 2024-11-21 14:38 | 2020-06-8 | Show | GitHub Exploit DB Packet Storm |
| 198539 | 7.4 |
HIGH
Network |
nodejs oracle |
node.js graalvm banking_extensibility_workbench mysql_cluster blockchain_platform |
TLS session reuse can lead to host certificate verification bypass in node version < 12.18.0 and < 14.4.0. |
CWE-295
Improper Certificate Validation |
CVE-2020-8172 | 2024-11-21 14:38 | 2020-06-8 | Show | GitHub Exploit DB Packet Storm |
| 198540 | 7.1 |
HIGH
Local |
bitdefender | antivirus_2020 | A vulnerability in the improper handling of symbolic links in Bitdefender Antivirus Free can allow an unprivileged user to substitute a quarantined file, and restore it to a privileged location. This… |
CWE-59
Link Following |
CVE-2020-8103 | 2024-11-21 14:38 | 2020-06-6 | Show | GitHub Exploit DB Packet Storm |