|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 22, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 242791 | 5 | 警告 | cnr.somee | - | CNR Hikaye Portal におけるデータベースをダウンロードされる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-4765 | 2012-06-26 16:19 | 2010-04-13 | Show | GitHub Exploit DB Packet Storm |
| 242792 | 9.3 | 危険 | マイクロソフト アドビシステムズ |
- | Adobe Reader におけるユーザに任意のコードを実行させる脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-4764 | 2012-06-26 16:19 | 2010-04-5 | Show | GitHub Exploit DB Packet Storm |
| 242793 | 9.3 | 危険 | dicas | - | dicas Mpegable Player におけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-4758 | 2012-06-26 16:19 | 2010-03-29 | Show | GitHub Exploit DB Packet Storm |
| 242794 | 9.3 | 危険 | evils-world | - | BrotherSoft EW-MusicPlayer におけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-4757 | 2012-06-26 16:19 | 2010-03-29 | Show | GitHub Exploit DB Packet Storm |
| 242795 | 9.3 | 危険 | beatport | - | Beatport Player の TraktorBeatport.exe におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-4756 | 2012-06-26 16:19 | 2010-03-29 | Show | GitHub Exploit DB Packet Storm |
| 242796 | 7.5 | 危険 | andrew charlton WordPress.org |
- | WordPress の My Category Order プラグインの mycategoryorder.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4748 | 2012-06-26 16:19 | 2010-03-26 | Show | GitHub Exploit DB Packet Storm |
| 242797 | 4.3 | 警告 | dreamlevels | - | Dreamlevels DreamPoll の index.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4746 | 2012-06-26 16:19 | 2010-03-26 | Show | GitHub Exploit DB Packet Storm |
| 242798 | 7.5 | 危険 | dreamlevels | - | Dreamlevels DreamPoll の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4745 | 2012-06-26 16:19 | 2010-03-26 | Show | GitHub Exploit DB Packet Storm |
| 242799 | 4.3 | 警告 | AfterLogic | - | AfterLogic WebMail Pro の history-storage.aspx におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4743 | 2012-06-26 16:19 | 2010-03-26 | Show | GitHub Exploit DB Packet Storm |
| 242800 | 7.5 | 危険 | Docebo | - | Docebo における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4742 | 2012-06-26 16:19 | 2010-03-26 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 22, 2026, 4:08 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 267711 | 7.5 |
HIGH
Network |
apple |
iphone_os mac_os_x watchos |
MapKit in Apple iOS before 9.3.2, OS X before 10.11.5, and watchOS before 2.2.1 does not use HTTPS for shared links, which allows remote attackers to obtain sensitive information by sniffing the netw… |
CWE-284
Improper Access Control |
CVE-2016-1842 | 2024-11-21 11:47 | 2016-05-20 | Show | GitHub Exploit DB Packet Storm |
| 267712 | 8.8 |
HIGH
Network |
apple |
iphone_os mac_os_x tvos watchos |
libxslt, as used in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory co… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2016-1841 | 2024-11-21 11:47 | 2016-05-20 | Show | GitHub Exploit DB Packet Storm |
| 267713 | 8.8 |
HIGH
Network |
canonical apple debian |
ubuntu_linux iphone_os mac_os_x debian_linux |
Use-after-free vulnerability in the xmlSAX2AttributeNs function in libxml2 before 2.9.4, as used in Apple iOS before 9.3.2 and OS X before 10.11.5, allows remote attackers to cause a denial of servic… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2016-1835 | 2024-11-21 11:47 | 2016-05-20 | Show | GitHub Exploit DB Packet Storm |
| 267714 | 7.8 |
HIGH
Local |
apple |
iphone_os mac_os_x tvos watchos |
libc in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1 allows local users to gain privileges or cause a denial of service (memory corruption) via unspecified… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2016-1832 | 2024-11-21 11:47 | 2016-05-20 | Show | GitHub Exploit DB Packet Storm |
| 267715 | 7.8 |
HIGH
Local |
apple |
iphone_os mac_os_x watchos tvos |
The kernel in Apple iOS before 9.3.2 and OS X before 10.11.5 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2016-1831 | 2024-11-21 11:47 | 2016-05-20 | Show | GitHub Exploit DB Packet Storm |
| 267716 | 7.8 |
HIGH
Local |
debian apple canonical redhat xmlsoft mcafee |
debian_linux iphone_os mac_os_x tvos watchos ubuntu_linux enterprise_linux_desktop enterprise_linux_server_aus enterprise_linux_workstation enterprise_linux_server_tus e… |
Heap-based buffer overflow in the xmlFAParsePosCharGroup function in libxml2 before 2.9.4, as used in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1, allows … |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2016-1840 | 2024-11-21 11:47 | 2016-05-20 | Show | GitHub Exploit DB Packet Storm |
| 267717 | 5.5 |
MEDIUM
Local |
apple canonical debian redhat mcafee xmlsoft |
iphone_os mac_os_x tvos watchos ubuntu_linux debian_linux enterprise_linux_desktop enterprise_linux_server_aus enterprise_linux_workstation enterprise_linux_server_tus e… |
The xmlDictAddString function in libxml2 before 2.9.4, as used in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1, allows remote attackers to cause a denial o… |
CWE-125
Out-of-bounds Read |
CVE-2016-1839 | 2024-11-21 11:47 | 2016-05-20 | Show | GitHub Exploit DB Packet Storm |
| 267718 | 5.5 |
MEDIUM
Local |
canonical debian apple redhat mcafee xmlsoft |
ubuntu_linux debian_linux iphone_os mac_os_x tvos watchos enterprise_linux_desktop enterprise_linux_server_aus enterprise_linux_workstation enterprise_linux_server_tus e… |
The xmlPArserPrintFileContextInternal function in libxml2 before 2.9.4, as used in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1, allows remote attackers to… |
CWE-125
Out-of-bounds Read |
CVE-2016-1838 | 2024-11-21 11:47 | 2016-05-20 | Show | GitHub Exploit DB Packet Storm |
| 267719 | 5.5 |
MEDIUM
Local |
canonical debian apple redhat mcafee xmlsoft |
ubuntu_linux debian_linux iphone_os mac_os_x tvos watchos enterprise_linux_desktop enterprise_linux_server_aus enterprise_linux_workstation enterprise_linux_server_tus e… |
Multiple use-after-free vulnerabilities in the (1) htmlPArsePubidLiteral and (2) htmlParseSystemiteral functions in libxml2 before 2.9.4, as used in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS … |
CWE-416
Use After Free |
CVE-2016-1837 | 2024-11-21 11:47 | 2016-05-20 | Show | GitHub Exploit DB Packet Storm |
| 267720 | 5.5 |
MEDIUM
Local |
canonical debian apple redhat xmlsoft mcafee |
ubuntu_linux debian_linux iphone_os mac_os_x tvos watchos enterprise_linux_desktop enterprise_linux_server_aus enterprise_linux_workstation enterprise_linux_server_tus e… |
Use-after-free vulnerability in the xmlDictComputeFastKey function in libxml2 before 2.9.4, as used in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1, allows… |
CWE-416
Use After Free |
CVE-2016-1836 | 2024-11-21 11:47 | 2016-05-20 | Show | GitHub Exploit DB Packet Storm |