|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 21, 2026, 2 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 200971 | 5.5 |
警告
Local |
ImageMagick | - | ImageMagick の MagickCore/pixel-accessor.h の IsPixelMonochrome 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-125
境界外読み取り |
CVE-2016-8678 | 2017-03-9 16:51 | 2016-09-14 | Show | GitHub Exploit DB Packet Storm |
| 200972 | 7.8 |
重要
Local |
openSUSE project Debian ImageMagick |
- | ImageMagick の MagickCore/quantum.c の AcquireQuantumPixels 関数における脆弱性 |
CWE-119
バッファエラー |
CVE-2016-8677 | 2017-03-9 16:51 | 2016-09-16 | Show | GitHub Exploit DB Packet Storm |
| 200973 | 9.8 |
緊急
Network |
Aerospike, Inc. | - | Aerospike Database Server の RW ファブリックメッセージのパーティクルタイプにおける境界外インデックスに関する脆弱性 |
CWE-129
配列インデックスの不適切な検証 |
CVE-2016-9053 | 2017-03-9 16:49 | 2016-10-26 | Show | GitHub Exploit DB Packet Storm |
| 200974 | 9.8 |
緊急
Network |
Aerospike, Inc. | - | Aerospike Database Server のバッチ処理フィールドの構文解析機能における境界外書き込みの脆弱性 |
CWE-787
境界外書き込み |
CVE-2016-9051 | 2017-03-9 16:49 | 2016-10-26 | Show | GitHub Exploit DB Packet Storm |
| 200975 | 7.5 |
重要
Network |
Aerospike, Inc. | - | Aerospike Database Server の Fabric_Worker コンポーネントにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-476
NULL ポインタデリファレンス |
CVE-2016-9049 | 2017-03-9 16:49 | 2016-10-26 | Show | GitHub Exploit DB Packet Storm |
| 200976 | 7.8 |
重要
Local |
JasPer Project openSUSE project Fedora Project |
- | JasPer の jas_stream.c の mem_close 関数におけるメモリ二重解放の脆弱性 |
CWE-415
二重解放 |
CVE-2016-8693 | 2017-03-9 16:03 | 2016-10-20 | Show | GitHub Exploit DB Packet Storm |
| 200977 | 5.5 |
警告
Local |
Debian JasPer Project Fedora Project |
- | JasPer の libjasper/jpc/jpc_dec.c の jpc_dec_process_siz 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-369
ゼロ除算 |
CVE-2016-8692 | 2017-03-9 16:03 | 2016-10-16 | Show | GitHub Exploit DB Packet Storm |
| 200978 | 5.5 |
警告
Local |
Debian JasPer Project Fedora Project |
- | JasPer の libjasper/jpc/jpc_dec.c の jpc_dec_process_siz 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-369
ゼロ除算 |
CVE-2016-8691 | 2017-03-9 16:03 | 2016-10-16 | Show | GitHub Exploit DB Packet Storm |
| 200979 | 5 | 警告 | アップル 日本電気 |
- | 複数の Apple 製品の Secure Transport における EXPORT_RSA 暗号に対して暗号スイートのダウングレード攻撃を実行される脆弱性 |
CWE-310
暗号の問題 |
CVE-2015-1067 | 2017-03-9 15:34 | 2015-03-9 | Show | GitHub Exploit DB Packet Storm |
| 200980 | 7.8 | 危険 | 日本電気 | - | SSL/TLS の実装が輸出グレードの RSA 鍵を受け入れる問題 (FREAK 攻撃) |
CWE-Other
その他 |
- | 2017-03-9 15:33 | 2015-03-6 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 21, 2026, 4:01 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 292171 | - | citrix |
xenmobile_device_manager xenmobile_device_manager_mdm |
Unspecified vulnerability in Citrix XenMobile Device Manager server (formerly Zenprise Device Manager server) 8.5, 8.6, and MDM 8.0.1 allows remote attackers to obtain sensitive information via unkno… |
NVD-CWE-noinfo
|
CVE-2014-1663 | 2024-11-21 11:04 | 2014-02-7 | Show | GitHub Exploit DB Packet Storm | |
| 292172 | - |
mozilla oracle fedoraproject suse opensuse debian canonical |
network_security_services seamonkey firefox firefox_esr thunderbird enterprise_manager_ops_center vm_server fedora linux_enterprise_desktop linux_enterprise_server opens… |
Mozilla Network Security Services (NSS) before 3.15.4, as used in Mozilla Firefox before 27.0, Firefox ESR 24.x before 24.3, Thunderbird before 24.3, SeaMonkey before 2.24, and other products, does n… |
CWE-326
Inadequate Encryption Strength |
CVE-2014-1491 | 2024-11-21 11:04 | 2014-02-6 | Show | GitHub Exploit DB Packet Storm | |
| 292173 | - |
mozilla oracle fedoraproject suse opensuse debian canonical |
network_security_services seamonkey firefox firefox_esr thunderbird enterprise_manager_ops_center vm_server fedora linux_enterprise_desktop linux_enterprise_server opens… |
Race condition in libssl in Mozilla Network Security Services (NSS) before 3.15.4, as used in Mozilla Firefox before 27.0, Firefox ESR 24.x before 24.3, Thunderbird before 24.3, SeaMonkey before 2.24… |
CWE-362
Race Condition |
CVE-2014-1490 | 2024-11-21 11:04 | 2014-02-6 | Show | GitHub Exploit DB Packet Storm | |
| 292174 | - |
oracle suse mozilla opensuse_project opensuse canonical |
solaris linux_enterprise_desktop linux_enterprise_server linux_enterprise_software_development_kit firefox opensuse ubuntu_linux |
Mozilla Firefox before 27.0 does not properly restrict access to about:home buttons by script on other pages, which allows user-assisted remote attackers to cause a denial of service (session restore… |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2014-1489 | 2024-11-21 11:04 | 2014-02-6 | Show | GitHub Exploit DB Packet Storm | |
| 292175 | - |
mozilla canonical oracle suse opensuse |
seamonkey firefox ubuntu_linux solaris linux_enterprise_desktop linux_enterprise_server opensuse linux_enterprise_software_development_kit |
The Web workers implementation in Mozilla Firefox before 27.0 and SeaMonkey before 2.24 allows remote attackers to execute arbitrary code via vectors involving termination of a worker process that ha… |
NVD-CWE-noinfo
|
CVE-2014-1488 | 2024-11-21 11:04 | 2014-02-6 | Show | GitHub Exploit DB Packet Storm | |
| 292176 | - |
mozilla oracle canonical suse opensuse |
seamonkey firefox solaris ubuntu_linux linux_enterprise_desktop linux_enterprise_server opensuse linux_enterprise_software_development_kit |
The Content Security Policy (CSP) implementation in Mozilla Firefox before 27.0 and SeaMonkey before 2.24 operates on XSLT stylesheets according to style-src directives instead of script-src directiv… |
NVD-CWE-noinfo
|
CVE-2014-1485 | 2024-11-21 11:04 | 2014-02-6 | Show | GitHub Exploit DB Packet Storm | |
| 292177 | - |
suse mozilla opensuse_project opensuse oracle |
linux_enterprise_desktop linux_enterprise_server linux_enterprise_software_development_kit firefox opensuse solaris |
Mozilla Firefox before 27.0 on Android 4.2 and earlier creates system-log entries containing profile paths, which allows attackers to obtain sensitive information via a crafted application. |
CWE-200
Information Exposure |
CVE-2014-1484 | 2024-11-21 11:04 | 2014-02-6 | Show | GitHub Exploit DB Packet Storm | |
| 292178 | - |
oracle canonical mozilla suse opensuse |
solaris ubuntu_linux seamonkey firefox linux_enterprise_desktop linux_enterprise_server opensuse suse_linux_enterprise_software_development_kit |
Mozilla Firefox before 27.0 and SeaMonkey before 2.24 allow remote attackers to bypass the Same Origin Policy and obtain sensitive information by using an IFRAME element in conjunction with certain t… |
CWE-1021
Improper Restriction of Rendered UI Layers or Frames |
CVE-2014-1483 | 2024-11-21 11:04 | 2014-02-6 | Show | GitHub Exploit DB Packet Storm | |
| 292179 | - |
suse opensuse oracle canonical mozilla |
linux_enterprise_desktop linux_enterprise_server opensuse linux_enterprise_software_development_kit solaris ubuntu_linux seamonkey firefox |
The file-download implementation in Mozilla Firefox before 27.0 and SeaMonkey before 2.24 does not properly restrict the timing of button selections, which allows remote attackers to conduct clickjac… |
CWE-1021
Improper Restriction of Rendered UI Layers or Frames |
CVE-2014-1480 | 2024-11-21 11:04 | 2014-02-6 | Show | GitHub Exploit DB Packet Storm | |
| 292180 | 7.5 |
HIGH
Network |
mozilla fedoraproject opensuse suse canonical debian redhat |
seamonkey firefox firefox_esr thunderbird fedora opensuse suse_linux_enterprise_software_development_kit suse_linux_enterprise_desktop suse_linux_enterprise_server ubuntu_l… |
The Web workers implementation in Mozilla Firefox before 27.0, Firefox ESR 24.x before 24.3, Thunderbird before 24.3, and SeaMonkey before 2.24 allows remote attackers to bypass the Same Origin Polic… |
CWE-346
Origin Validation Error |
CVE-2014-1487 | 2024-11-21 11:04 | 2014-02-6 | Show | GitHub Exploit DB Packet Storm |