|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 21, 2026, 6:01 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 242671 | 7.5 | 危険 | dan brown | - | Moa Gallery における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-4614 | 2012-06-26 16:19 | 2010-01-18 | Show | GitHub Exploit DB Packet Storm |
| 242672 | 7.5 | 危険 | fernando soares Joomla! |
- | Joomla! 用 Fernando Soares Mamboleto コンポーネントの mamboleto.php における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-4604 | 2012-06-26 16:19 | 2010-01-12 | Show | GitHub Exploit DB Packet Storm |
| 242673 | 7.5 | 危険 | corephp Joomla! |
- | Joomla! の jphoto コンポーネントにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4598 | 2012-06-26 16:19 | 2010-01-12 | Show | GitHub Exploit DB Packet Storm |
| 242674 | 9.3 | 危険 | awingsoft | - | AwingSoft Awakening Web3D Player などの WindsPlayerIE.View.1 ActiveX コントロールにおけるヒープベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-4588 | 2012-06-26 16:19 | 2010-01-7 | Show | GitHub Exploit DB Packet Storm |
| 242675 | 5 | 警告 | Cherokee Project | - | Cherokee Web Server におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-Other
その他 |
CVE-2009-4587 | 2012-06-26 16:19 | 2010-01-7 | Show | GitHub Exploit DB Packet Storm |
| 242676 | 5 | 警告 | ASP indir | - | UranyumSoft Listing Service におけるデータベースをダウンロードされる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-4585 | 2012-06-26 16:19 | 2010-01-6 | Show | GitHub Exploit DB Packet Storm |
| 242677 | 7.5 | 危険 | dbmasters | - | dB Masters Multimedia Links Directory の admin.php における管理者アクセス権を取得される脆弱性 |
CWE-287
不適切な認証 |
CVE-2009-4584 | 2012-06-26 16:19 | 2010-01-6 | Show | GitHub Exploit DB Packet Storm |
| 242678 | 4.3 | 警告 | FacileForms Joomla! Mambo Foundation |
- | Mambo および Joomla! 用の Facileforms コンポーネントにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4578 | 2012-06-26 16:19 | 2010-01-6 | Show | GitHub Exploit DB Packet Storm |
| 242679 | 4.3 | 警告 | Drupal | - | Drupal 用の Randomizer モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4602 | 2012-06-26 16:19 | 2009-12-9 | Show | GitHub Exploit DB Packet Storm |
| 242680 | 7.5 | 危険 | cmstactics Joomla! |
- | Joomla! の beeheard コンポーネントにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4576 | 2012-06-26 16:19 | 2010-01-6 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 22, 2026, 4:08 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 267091 | 7.1 |
HIGH
Local |
php | php | The make_http_soap_request function in ext/soap/php_http.c in PHP before 5.4.44, 5.5.x before 5.5.28, 5.6.x before 5.6.12, and 7.x before 7.0.4 allows remote attackers to obtain sensitive information… |
CWE-20
Improper Input Validation |
CVE-2016-3185 | 2024-11-21 11:49 | 2016-05-16 | Show | GitHub Exploit DB Packet Storm |
| 267092 | 8.8 |
HIGH
Network |
debian mercurial |
debian_linux mercurial |
The convert extension in Mercurial before 3.8 might allow context-dependent attackers to execute arbitrary code via a crafted git repository name. |
CWE-284
Improper Access Control |
CVE-2016-3105 | 2024-11-21 11:49 | 2016-05-10 | Show | GitHub Exploit DB Packet Storm |
| 267093 | 4.6 |
MEDIUM
Physics |
canonical linux novell |
ubuntu_linux linux_kernel suse_linux_enterprise_module_for_public_cloud suse_linux_enterprise_server suse_linux_enterprise_live_patching suse_linux_enterprise_real_time_extension su… |
The digi_port_init function in drivers/usb/serial/digi_acceleport.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and s… |
NVD-CWE-Other
|
CVE-2016-3140 | 2024-11-21 11:49 | 2016-05-2 | Show | GitHub Exploit DB Packet Storm |
| 267094 | 4.6 |
MEDIUM
Physics |
linux canonical novell |
linux_kernel ubuntu_linux suse_linux_enterprise_module_for_public_cloud suse_linux_enterprise_server suse_linux_enterprise_live_patching suse_linux_enterprise_real_time_extension su… |
The acm_probe function in drivers/usb/class/cdc-acm.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) v… |
NVD-CWE-Other
|
CVE-2016-3138 | 2024-11-21 11:49 | 2016-05-2 | Show | GitHub Exploit DB Packet Storm |
| 267095 | 4.6 |
MEDIUM
Physics |
novell canonical linux |
suse_linux_enterprise_module_for_public_cloud suse_linux_enterprise_server suse_linux_enterprise_live_patching suse_linux_enterprise_real_time_extension suse_linux_enterprise_desktop s… |
drivers/usb/serial/cypress_m8.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) via a USB device withou… |
NVD-CWE-Other
|
CVE-2016-3137 | 2024-11-21 11:49 | 2016-05-2 | Show | GitHub Exploit DB Packet Storm |
| 267096 | 4.6 |
MEDIUM
Physics |
linux novell canonical |
linux_kernel suse_linux_enterprise_module_for_public_cloud suse_linux_enterprise_server suse_linux_enterprise_live_patching suse_linux_enterprise_desktop suse_linux_enterprise_real_tim… |
The mct_u232_msr_to_state function in drivers/usb/serial/mct_u232.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and s… |
NVD-CWE-Other
|
CVE-2016-3136 | 2024-11-21 11:49 | 2016-05-2 | Show | GitHub Exploit DB Packet Storm |
| 267097 | 5.5 |
MEDIUM
Local |
novell canonical linux |
suse_linux_enterprise_module_for_public_cloud suse_linux_enterprise_server suse_linux_enterprise_live_patching suse_linux_enterprise_real_time_extension suse_linux_enterprise_desktop s… |
The IPv4 implementation in the Linux kernel before 4.5.2 mishandles destruction of device objects, which allows guest OS users to cause a denial of service (host OS networking outage) by arranging fo… |
CWE-399
Resource Management Errors |
CVE-2016-3156 | 2024-11-21 11:49 | 2016-04-28 | Show | GitHub Exploit DB Packet Storm |
| 267098 | 7.8 |
HIGH
Local |
linux canonical |
linux_kernel ubuntu_linux |
Integer overflow in the xt_alloc_table_info function in net/netfilter/x_tables.c in the Linux kernel through 4.5.2 on 32-bit platforms allows local users to gain privileges or cause a denial of servi… |
CWE-189 NVD-CWE-Other Numeric Errors |
CVE-2016-3135 | 2024-11-21 11:49 | 2016-04-28 | Show | GitHub Exploit DB Packet Storm |
| 267099 | 4.6 |
MEDIUM
Physics |
novell linux |
suse_linux_enterprise_module_for_public_cloud suse_linux_enterprise_server suse_linux_enterprise_live_patching suse_linux_enterprise_real_time_extension suse_linux_enterprise_desktop s… |
The wacom_probe function in drivers/input/tablet/wacom_sys.c in the Linux kernel before 3.17 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system cr… |
NVD-CWE-Other
|
CVE-2016-3139 | 2024-11-21 11:49 | 2016-04-28 | Show | GitHub Exploit DB Packet Storm |
| 267100 | 8.4 |
HIGH
Local |
novell linux |
suse_linux_enterprise_module_for_public_cloud suse_linux_enterprise_server suse_linux_enterprise_live_patching suse_linux_enterprise_desktop suse_linux_enterprise_real_time_extension s… |
The netfilter subsystem in the Linux kernel through 4.5.2 does not validate certain offset fields, which allows local users to gain privileges or cause a denial of service (heap memory corruption) vi… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2016-3134 | 2024-11-21 11:49 | 2016-04-28 | Show | GitHub Exploit DB Packet Storm |