|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":Feb. 9, 2026, 12:59 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 223311 | 4.3 | 警告 | サン・マイクロシステムズ | - | Sun GlassFish Enterprise Server などの製品で使用されている Sun Woodstock におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-1554 | 2012-12-20 19:10 | 2009-05-6 | Show | GitHub Exploit DB Packet Storm |
| 223312 | 7.8 | 危険 | SCO | - | SCO Unixware の IGMP ドライバにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-1552 | 2012-12-20 19:10 | 2009-04-30 | Show | GitHub Exploit DB Packet Storm |
| 223313 | 7.5 | 危険 | qt-cute | - | Qt quickteam における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-1551 | 2012-12-20 19:10 | 2009-05-6 | Show | GitHub Exploit DB Packet Storm |
| 223314 | 5 | 警告 | zakkis | - | Zakkis Technology ABC Advertise における管理者ログイン名とパスワードを取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-1550 | 2012-12-20 19:10 | 2009-05-6 | Show | GitHub Exploit DB Packet Storm |
| 223315 | 7.5 | 危険 | qsix | - | BluSky CMS の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-1548 | 2012-12-20 19:10 | 2009-05-6 | Show | GitHub Exploit DB Packet Storm |
| 223316 | 4.3 | 警告 | シマンテック | - | Symantec Norton Ghost の Symantec.EasySetup.1 ActiveX コントロールにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-Other
その他 |
CVE-2009-1517 | 2012-12-20 19:10 | 2009-05-4 | Show | GitHub Exploit DB Packet Storm |
| 223317 | 7.5 | 危険 | xigla | - | Absolute Form Processor XE における認証を回避される脆弱性 |
CWE-287
不適切な認証 |
CVE-2009-1504 | 2012-12-20 19:10 | 2009-05-1 | Show | GitHub Exploit DB Packet Storm |
| 223318 | 7.5 | 危険 | tigerdms | - | Tiger DMS の login.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-1503 | 2012-12-20 19:10 | 2009-05-1 | Show | GitHub Exploit DB Packet Storm |
| 223319 | 6.8 | 警告 | projectcms | - | ProjectCMS の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-1500 | 2012-12-20 19:10 | 2009-05-1 | Show | GitHub Exploit DB Packet Storm |
| 223320 | 5 | 警告 | webfileexplorer | - | Web File Explorer におけるデータベースをダウンロードされる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-1495 | 2012-12-20 19:10 | 2009-05-1 | Show | GitHub Exploit DB Packet Storm |
Update Date:April 21, 2026, 4:10 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 1791 | 7.5 |
HIGH
Network |
siemens |
scalance_m-800_firmware scalance_s615_firmware scalance_w700_ieee_802.11ax_firmware scalance_w700_ieee_802.11n_firmware scalance_w700_ieee_802.11ac_firmware scalance_xb-200_firmware | Los dispositivos afectados no manejan adecuadamente la renegociación de los parámetros SSL/TLS. Esto podría permitir a un atacante remoto no autenticado eludir la prevención de fuerza bruta de TCP y … |
CWE-770
Allocation of Resources Without Limits or Throttling |
CVE-2022-36324 | 2026-04-14 18:16 | 2022-08-10 | Show | GitHub Exploit DB Packet Storm |
| 1792 | 7.2 |
HIGH
Network |
siemens |
scalance_m-800_firmware scalance_s615_firmware scalance_sc-600_firmware scalance_sc622-2c_firmware scalance_sc632-2c_firmware scalance_sc636-2c_firmware scalance_sc642-2c_firmware | Affected devices do not properly sanitize an input field. This could allow an authenticated remote attacker with administrative privileges to inject code or spawn a system root shell. |
CWE-74 NVD-CWE-Other Injection |
CVE-2022-36323 | 2026-04-14 18:16 | 2022-08-10 | Show | GitHub Exploit DB Packet Storm |
| 1793 | 7.2 |
HIGH
Network |
siemens |
scalance_m-800_firmware scalance_s615_firmware scalance_sc-600_firmware scalance_sc622-2c_firmware scalance_sc632-2c_firmware scalance_sc636-2c_firmware scalance_sc642-2c_firmware | Los dispositivos afectados no sanean correctamente un campo de entrada. Esto podría permitir a un atacante remoto autenticado con privilegios administrativos inyectar código o generar un shell de raí… |
CWE-74 NVD-CWE-Other Injection |
CVE-2022-36323 | 2026-04-14 18:16 | 2022-08-10 | Show | GitHub Exploit DB Packet Storm |
| 1794 | 8.8 |
HIGH
Network |
siemens |
6gk6108-4am00-2ba2_firmware 6gk6108-4am00-2da2_firmware 6gk5804-0ap00-2aa2_firmware 6gk5812-1aa00-2aa2_firmware 6gk5812-1ba00-2aa2_firmware 6gk5816-1aa00-2aa2_firmware 6gk5816-1ba00… |
Affected devices do not properly authorize the change password function of the web interface. This could allow low privileged users to escalate their privileges. |
CWE-862
Missing Authorization |
CVE-2022-31765 | 2026-04-14 18:16 | 2022-10-11 | Show | GitHub Exploit DB Packet Storm |
| 1795 | 8.8 |
HIGH
Network |
siemens |
6gk6108-4am00-2ba2_firmware 6gk6108-4am00-2da2_firmware 6gk5804-0ap00-2aa2_firmware 6gk5812-1aa00-2aa2_firmware 6gk5812-1ba00-2aa2_firmware 6gk5816-1aa00-2aa2_firmware 6gk5816-1ba00… |
Los dispositivos afectados no autorizan apropiadamente la función change password de la interfaz web. Esto podría permitir a usuarios poco privilegiado escalar sus privilegios |
CWE-862
Missing Authorization |
CVE-2022-31765 | 2026-04-14 18:16 | 2022-10-11 | Show | GitHub Exploit DB Packet Storm |
| 1796 | 5.3 |
MEDIUM
Adjacent |
samsung arista siemens |
galaxy_i9305_firmware c-250_firmware c-260_firmware c-230_firmware c-235_firmware c-200_firmware c-120_firmware c-130_firmware c-100_firmware c-110_firmware o-105_firmwa… |
An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WPA, WPA2, and WPA3 implementations reassemble fragments with non-consecutive packet numbers. An adversary can abuse this to exfi… |
CWE-20
Improper Input Validation |
CVE-2020-26146 | 2026-04-14 18:16 | 2021-05-12 | Show | GitHub Exploit DB Packet Storm |
| 1797 | 5.3 |
MEDIUM
Adjacent |
samsung arista siemens |
galaxy_i9305_firmware c-250_firmware c-260_firmware c-230_firmware c-235_firmware c-200_firmware c-120_firmware c-130_firmware c-100_firmware c-110_firmware o-105_firmwa… |
Se detectó un problema en los dispositivos Samsung Galaxy S3 i9305 versión 4.4.4. Las implementaciones de WPA, WPA2 y WPA3 reensamblan fragmentos con números de paquete no consecutivos. Un adversario… |
CWE-20
Improper Input Validation |
CVE-2020-26146 | 2026-04-14 18:16 | 2021-05-12 | Show | GitHub Exploit DB Packet Storm |
| 1798 | 6.5 |
MEDIUM
Adjacent |
samsung siemens |
galaxy_i9305_firmware 6gk5763-1al00-7da0_firmware 6gk5766-1ge00-7da0_firmware 6gk5766-1ge00-7db0_firmware 6gk5766-1je00-7da0_firmware 6gk5766-1ge00-7ta0_firmware 6gk5766-1ge00-7tb0_… |
An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WEP, WPA, WPA2, and WPA3 implementations accept second (or subsequent) broadcast fragments even when sent in plaintext and proces… |
CWE-20
Improper Input Validation |
CVE-2020-26145 | 2026-04-14 18:16 | 2021-05-12 | Show | GitHub Exploit DB Packet Storm |
| 1799 | 6.5 |
MEDIUM
Adjacent |
samsung siemens |
galaxy_i9305_firmware 6gk5763-1al00-7da0_firmware 6gk5766-1ge00-7da0_firmware 6gk5766-1ge00-7db0_firmware 6gk5766-1je00-7da0_firmware 6gk5766-1ge00-7ta0_firmware 6gk5766-1ge00-7tb0_… |
Se detectó un problema en los dispositivos Samsung Galaxy S3 i9305 versión 4.4.4. Las implementaciones de WEP, WPA, WPA2 y WPA3 aceptan segundos fragmentos de transmisión (o posteriores) incluso cuan… |
CWE-20
Improper Input Validation |
CVE-2020-26145 | 2026-04-14 18:16 | 2021-05-12 | Show | GitHub Exploit DB Packet Storm |
| 1800 | 6.5 |
MEDIUM
Adjacent |
samsung arista siemens |
galaxy_i9305_firmware c-250_firmware c-260_firmware c-230_firmware c-235_firmware c-200_firmware c-120_firmware c-130_firmware c-100_firmware c-110_firmware o-105_firmwa… |
An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WEP, WPA, WPA2, and WPA3 implementations accept plaintext A-MSDU frames as long as the first 8 bytes correspond to a valid RFC104… |
CWE-20
Improper Input Validation |
CVE-2020-26144 | 2026-04-14 18:16 | 2021-05-12 | Show | GitHub Exploit DB Packet Storm |