|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 18, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 256031 | 5 | 警告 | サイバートラスト株式会社 OpenSSL Project IBM レッドハット |
- | OpenSSL の dtls1_buffer_record 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-119
バッファエラー |
CVE-2009-1377 | 2010-03-12 14:43 | 2009-05-19 | Show | GitHub Exploit DB Packet Storm |
| 256032 | 5 | 警告 | アップル サイバートラスト株式会社 OpenSSL Project Apache Software Foundation レッドハット |
- | OpenSSL の zlib_stateful_init 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2008-1678 | 2010-03-12 14:43 | 2008-07-10 | Show | GitHub Exploit DB Packet Storm |
| 256033 | 5.8 | 警告 | OpenPNEプロジェクト | - | OpenPNE におけるアクセス制限回避の脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2010-1040 | 2010-03-11 12:39 | 2010-03-5 | Show | GitHub Exploit DB Packet Storm |
| 256034 | 10 | 危険 | アドビシステムズ | - | Adobe Download Manager における任意のプログラムをダウンロードおよびインストールされる脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-0189 | 2010-03-11 12:07 | 2010-02-23 | Show | GitHub Exploit DB Packet Storm |
| 256035 | 7.2 | 危険 | サイバートラスト株式会社 Linux レッドハット |
- | Linux kernel の collect_rx_frame 関数における脆弱性 |
CWE-119
バッファエラー |
CVE-2009-4005 | 2010-03-11 12:05 | 2009-11-20 | Show | GitHub Exploit DB Packet Storm |
| 256036 | 7.8 | 危険 | サイバートラスト株式会社 Linux レッドハット |
- | Linux kernel の RTL8169 NIC ドライバにおけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-1389 | 2010-03-11 12:04 | 2009-06-16 | Show | GitHub Exploit DB Packet Storm |
| 256037 | 5 | 警告 | サン・マイクロシステムズ サイバートラスト株式会社 VMware Net-SNMP レッドハット |
- | net-snmp の snmpd におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-189
数値処理の問題 |
CVE-2009-1887 | 2010-03-11 12:03 | 2009-06-25 | Show | GitHub Exploit DB Packet Storm |
| 256038 | 7.1 | 危険 | シスコシステムズ | - | 複数の Cisco 製品におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-0568 | 2010-03-10 11:23 | 2010-02-17 | Show | GitHub Exploit DB Packet Storm |
| 256039 | 5 | 警告 | シスコシステムズ | - | 複数の Cisco 製品におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-0567 | 2010-03-10 11:23 | 2010-02-17 | Show | GitHub Exploit DB Packet Storm |
| 256040 | 7.1 | 危険 | シスコシステムズ | - | Cisco Adaptive Security Appliance におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-0566 | 2010-03-10 11:23 | 2010-02-17 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 18, 2026, 4:12 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 197781 | 7.5 |
HIGH
Network |
rack_project debian canonical |
rack debian_linux ubuntu_linux |
A reliance on cookies without validation/integrity check security vulnerability exists in rack < 2.2.3, rack < 2.1.4 that makes it is possible for an attacker to forge a secure or host-only cookie pr… |
CWE-20
Improper Input Validation |
CVE-2020-8184 | 2024-11-21 14:38 | 2020-06-20 | Show | GitHub Exploit DB Packet Storm |
| 197782 | 7.5 |
HIGH
Network |
rubyonrails debian opensuse |
rails debian_linux leap backports_sle |
A deserialization of untrusted data vulnerability exists in rails < 5.2.4.3, rails < 6.0.3.1 which can allow an attacker to supply information can be inadvertently leaked fromStrong Parameters. |
CWE-502
Deserialization of Untrusted Data |
CVE-2020-8164 | 2024-11-21 14:38 | 2020-06-20 | Show | GitHub Exploit DB Packet Storm |
| 197783 | 7.5 |
HIGH
Network |
rubyonrails debian |
rails debian_linux |
A client side enforcement of server side security vulnerability exists in rails < 5.2.4.2 and rails < 6.0.3.1 ActiveStorage's S3 adapter that allows the Content-Length of a direct file upload to be m… |
CWE-434
Unrestricted Upload of File with Dangerous Type |
CVE-2020-8162 | 2024-11-21 14:38 | 2020-06-20 | Show | GitHub Exploit DB Packet Storm |
| 197784 | 5.7 |
MEDIUM
Network |
openmicroscopy | omero.web | OMERO.web before 5.6.3 optionally allows sensitive data elements (e.g., a session key) to be passed as URL query parameters. If an attacker tricks a user into clicking a malicious link in OMERO.web, … |
CWE-200
Information Exposure |
CVE-2020-7932 | 2024-11-21 14:38 | 2020-06-18 | Show | GitHub Exploit DB Packet Storm |
| 197785 | 6.5 |
MEDIUM
Network |
open-xchange | open-xchange_appsuite | OX App Suite through 7.10.3 allows XXE attacks. |
CWE-611
XXE |
CVE-2020-8541 | 2024-11-21 14:38 | 2020-06-16 | Show | GitHub Exploit DB Packet Storm |
| 197786 | 6.7 |
MEDIUM
Local |
synaptics | smart_audio_uwp | An unquoted search path vulnerability was reported in versions prior to 1.0.83.0 of the Synaptics Smart Audio UWP app associated with the DCHU audio drivers on Lenovo platforms that could allow an ad… |
CWE-428
Unquoted Search Path or Element |
CVE-2020-8337 | 2024-11-21 14:38 | 2020-06-10 | Show | GitHub Exploit DB Packet Storm |
| 197787 | 6.8 |
MEDIUM
Physics |
lenovo |
thinkpad_e14_firmware thinkpad_e15_firmware thinkpad_r14_firmware thinkpad_s3_gen_2_firmware thinkpad_e490s_firmware thinkpad_s3_firmware thinkpad_e490_firmware thinkpad_e590_fir… |
Lenovo implemented Intel CSME Anti-rollback ARB protections on some ThinkPad models to prevent roll back of CSME Firmware in flash. |
NVD-CWE-noinfo
|
CVE-2020-8336 | 2024-11-21 14:38 | 2020-06-10 | Show | GitHub Exploit DB Packet Storm |
| 197788 | 6.8 |
MEDIUM
Physics |
lenovo |
thinkpad_t495s_firmware thinkpad_x395_firmware thinkpad_t495_firmware thinkpad_a485_firmware thinkpad_a285_firmware thinkpad_a475_firmware thinkpad_a275_firmware |
The BIOS tamper detection mechanism was not triggered in Lenovo ThinkPad T495s, X395, T495, A485, A285, A475, A275 which may allow for unauthorized access. |
CWE-754
Improper Check for Unusual or Exceptional Conditions |
CVE-2020-8334 | 2024-11-21 14:38 | 2020-06-10 | Show | GitHub Exploit DB Packet Storm |
| 197789 | 6.7 |
MEDIUM
Local |
lenovo |
330-14ast_firmware 330-15ast_firmware 330-17ast_firmware 340c-15api_firmware 340c-15ast_firmware 720s_touch-15ikb_firmware 720s-15ikb_firmware 730s-13iwl_firmware c640-iml_fir… |
A potential vulnerability in the SMI callback function used in the Legacy SD driver in some Lenovo ThinkPad, ThinkStation, and Lenovo Notebook models may allow arbitrary code execution. |
NVD-CWE-noinfo
|
CVE-2020-8323 | 2024-11-21 14:38 | 2020-06-10 | Show | GitHub Exploit DB Packet Storm |
| 197790 | 6.7 |
MEDIUM
Local |
lenovo |
330-14ast_firmware 330-15ast_firmware 330-17ast_firmware 340c-15api_firmware 340c-15ast_firmware 720s_touch-15ikb_firmware 720s-15ikb_firmware 730s-13iwl_firmware c640-iml_fir… |
A potential vulnerability in the SMI callback function used in the Legacy USB driver in some Lenovo Notebook and ThinkStation models may allow arbitrary code execution. |
NVD-CWE-noinfo
|
CVE-2020-8322 | 2024-11-21 14:38 | 2020-06-10 | Show | GitHub Exploit DB Packet Storm |