|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 17, 2026, noon
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 241891 | 9.3 | 危険 | Krzysztof Kowalczyk ccxvii |
- | SumatraPDF で使用される MuPDF の pdf_shade4.c におけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-4117 | 2012-06-26 16:18 | 2009-11-30 | Show | GitHub Exploit DB Packet Storm |
| 241892 | 3.5 | 注意 | CutePHP | - | CutePHP CuteNews におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-4116 | 2012-06-26 16:18 | 2009-11-30 | Show | GitHub Exploit DB Packet Storm |
| 241893 | 6.5 | 警告 | CutePHP | - | CutePHP CuteNews の Categories モジュールにおける任意の PHP コードを挿入される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-4115 | 2012-06-26 16:18 | 2009-11-30 | Show | GitHub Exploit DB Packet Storm |
| 241894 | 6.5 | 警告 | korn19 CutePHP |
- | CutePHP CuteNews および UTF-8 CuteNews における任意の PHP コードを挿入される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-4113 | 2012-06-26 16:18 | 2009-11-30 | Show | GitHub Exploit DB Packet Storm |
| 241895 | 9 | 危険 | The Cacti Group | - | Cacti における権限を取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-4112 | 2012-06-26 16:18 | 2009-11-30 | Show | GitHub Exploit DB Packet Storm |
| 241896 | 4.3 | 警告 | DNN | - | DotNetNuke の search 機能におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4110 | 2012-06-26 16:18 | 2009-11-26 | Show | GitHub Exploit DB Packet Storm |
| 241897 | 5 | 警告 | DNN | - | DotNetNuke のインストールウィザードにおけるバージョン情報などの重要な情報へアクセスされる脆弱性 |
CWE-200
情報漏えい |
CVE-2009-4109 | 2012-06-26 16:18 | 2009-11-26 | Show | GitHub Exploit DB Packet Storm |
| 241898 | 4 | 警告 | dxm2008 | - | XM Easy Personal FTP Server におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-119
バッファエラー |
CVE-2009-4108 | 2012-06-26 16:18 | 2009-11-29 | Show | GitHub Exploit DB Packet Storm |
| 241899 | 9.3 | 危険 | amplusnet | - | Invisible Browsing におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-4107 | 2012-06-26 16:18 | 2009-11-29 | Show | GitHub Exploit DB Packet Storm |
| 241900 | 7.5 | 危険 | Debian | - | Lintian における任意のコマンドを実行される脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4015 | 2012-06-26 16:18 | 2010-01-27 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 17, 2026, 4:15 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 268801 | 7.8 |
HIGH
Local |
firejail_project | firejail | Firejail allows --chroot when seccomp is not supported, which might allow local users to gain privileges. |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2016-10123 | 2024-11-21 11:43 | 2017-04-13 | Show | GitHub Exploit DB Packet Storm |
| 268802 | 7.8 |
HIGH
Local |
firejail_project | firejail | Firejail does not properly clean environment variables, which allows local users to gain privileges. |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2016-10122 | 2024-11-21 11:43 | 2017-04-13 | Show | GitHub Exploit DB Packet Storm |
| 268803 | 7.8 |
HIGH
Local |
firejail_project | firejail | Firejail uses weak permissions for /dev/shm/firejail and possibly other files, which allows local users to gain privileges. |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2016-10121 | 2024-11-21 11:43 | 2017-04-13 | Show | GitHub Exploit DB Packet Storm |
| 268804 | 7.8 |
HIGH
Local |
firejail_project | firejail | Firejail uses 0777 permissions when mounting (1) /dev, (2) /dev/shm, (3) /var/tmp, or (4) /var/lock, which allows local users to gain privileges. |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2016-10120 | 2024-11-21 11:43 | 2017-04-13 | Show | GitHub Exploit DB Packet Storm |
| 268805 | 7.8 |
HIGH
Local |
firejail_project | firejail | Firejail uses 0777 permissions when mounting /tmp, which allows local users to gain privileges. |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2016-10119 | 2024-11-21 11:43 | 2017-04-13 | Show | GitHub Exploit DB Packet Storm |
| 268806 | 3.3 |
LOW
Local |
firejail_project | firejail | Firejail allows local users to truncate /etc/resolv.conf via a chroot command to /. |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2016-10118 | 2024-11-21 11:43 | 2017-04-13 | Show | GitHub Exploit DB Packet Storm |
| 268807 | 7.8 |
HIGH
Local |
firejail_project | firejail | Firejail does not restrict access to --tmpfs, which allows local users to gain privileges, as demonstrated by mounting over /etc. |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2016-10117 | 2024-11-21 11:43 | 2017-04-13 | Show | GitHub Exploit DB Packet Storm |
| 268808 | 5.9 |
MEDIUM
Network |
bluecoat |
ssl_visibility_appliance_sv1800_firmware ssl_visibility_appliance_sv800_firmware ssl_visibility_appliance_sv3800_firmware ssl_visibility_appliance_sv2800_firmware |
Symantec SSL Visibility (SSLV) 3.8.4FC, 3.9, 3.10 before 3.10.4.1, and 3.11 before 3.11.3.1 is susceptible to a denial-of-service vulnerability that impacts the SSL servers for intercepted SSL connec… |
CWE-399
Resource Management Errors |
CVE-2016-10259 | 2024-11-21 11:43 | 2017-04-11 | Show | GitHub Exploit DB Packet Storm |
| 268809 | 7.8 |
HIGH
Local |
synology | photo_station | Synology Photo Station before 6.3-2958 allows local users to gain privileges by leveraging setuid execution of a "synophoto_dsm_user --copy-no-ea" command. |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2016-10323 | 2024-11-21 11:43 | 2017-04-11 | Show | GitHub Exploit DB Packet Storm |
| 268810 | 8.8 |
HIGH
Network |
synology | photo_station | Synology Photo Station before 6.3-2958 allows remote authenticated guest users to execute arbitrary commands via shell metacharacters in the X-Forwarded-For HTTP header to photo/login.php. |
CWE-77
Command Injection |
CVE-2016-10322 | 2024-11-21 11:43 | 2017-04-11 | Show | GitHub Exploit DB Packet Storm |