|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 8, 2026, 4:01 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 252361 | 6.8 | 警告 | レッドハット | - | Red Hat Network Satellite およびその他の製品の Spacewalk におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2009-4139 | 2012-03-27 18:42 | 2011-06-16 | Show | GitHub Exploit DB Packet Storm |
| 252362 | 5 | 警告 | Stichting NLnet Labs | - | Unbound におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2009-4008 | 2012-03-27 18:42 | 2011-06-2 | Show | GitHub Exploit DB Packet Storm |
| 252363 | 6.4 | 警告 | レッドハット | - | RHN Satellite Server における不適切なプロキシとして利用される脆弱性 |
CWE-200
情報漏えい |
CVE-2009-0788 | 2012-03-27 18:42 | 2011-04-11 | Show | GitHub Exploit DB Packet Storm |
| 252364 | 4.3 | 警告 | Mozilla Foundation | - | Mozilla Firefox におけるクロスサイトスクリプティングの保護機能を回避される脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-5017 | 2012-03-27 18:42 | 2010-11-12 | Show | GitHub Exploit DB Packet Storm |
| 252365 | 7.5 | 危険 | turbogears | - | TurboGears2 の URL ディスパッチメカニズムにおける詳細不明な脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-5015 | 2012-03-27 18:42 | 2010-11-5 | Show | GitHub Exploit DB Packet Storm |
| 252366 | 7.5 | 危険 | turbogears | - | TurboGears2 のデフォルトのクイックスタートの設定における repoze.who 認証を回避される脆弱性 |
CWE-310
暗号の問題 |
CVE-2009-5014 | 2012-03-27 18:42 | 2010-11-5 | Show | GitHub Exploit DB Packet Storm |
| 252367 | 5 | 警告 | infradead | - | OpenConnect におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2009-5009 | 2012-03-27 18:42 | 2010-10-14 | Show | GitHub Exploit DB Packet Storm |
| 252368 | 2.1 | 注意 | シスコシステムズ | - | CSD におけるポリシー制限を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-5008 | 2012-03-27 18:42 | 2010-10-14 | Show | GitHub Exploit DB Packet Storm |
| 252369 | 3.3 | 注意 | シスコシステムズ | - | Cisco AnyConnect SSL VPN のトライアルクライアントにおける任意のファイルを上書きされる脆弱性 |
CWE-59
リンク解釈の問題 |
CVE-2009-5007 | 2012-03-27 18:42 | 2010-10-14 | Show | GitHub Exploit DB Packet Storm |
| 252370 | 4 | 警告 | Apache Software Foundation レッドハット |
- | Red Hat Enterprise MRG などで使用される Apache Qpid の SessionAdapter::ExchangeHandlerImpl::checkAlternate 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-Other
その他 |
CVE-2009-5006 | 2012-03-27 18:42 | 2010-10-17 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 8, 2026, 4:09 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 246341 | 5.3 |
MEDIUM
Network |
qualcomm |
pq4019_firmware ipq8074_firmware mdm9150_firmware mdm9206_firmware mdm9607_firmware mdm9635m_firmware mdm9640_firmware mdm9650_firmware mdm9655_firmware msm8909w_firmware | While deserializing any key blob during key operations, buffer overflow could occur, exposing partial key information if any key operations are invoked in Snapdragon Auto, Snapdragon Compute, Snapdra… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2018-13907 | 2024-11-21 12:48 | 2019-06-15 | Show | GitHub Exploit DB Packet Storm |
| 246342 | 9.1 |
CRITICAL
Network |
qualcomm |
ipq4019_firmware ipq8074_firmware mdm9150_firmware mdm9206_firmware mdm9607_firmware mdm9635m_firmware mdm9640_firmware mdm9650_firmware mdm9655_firmware msm8909w_firmware<… |
The HMAC authenticating the message from QSEE is vulnerable to timing side channel analysis leading to potentially forged application message in Snapdragon Auto, Snapdragon Compute, Snapdragon Connec… |
CWE-20 CWE-417 Improper Input Validation Channel and Path Errors |
CVE-2018-13906 | 2024-11-21 12:48 | 2019-06-15 | Show | GitHub Exploit DB Packet Storm |
| 246343 | 7.5 |
HIGH
Network |
qualcomm |
mdm9150_firmware mdm9206_firmware mdm9607_firmware mdm9615_firmware mdm9635m_firmware mdm9640_firmware mdm9650_firmware mdm9655_firmware msm8909w_firmware msm8996au_firmwar… |
Out of bounds memory read and access due to improper array index validation may lead to unexpected behavior while decoding XTRA file in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, S… |
CWE-129
Improper Validation of Array Index |
CVE-2018-13902 | 2024-11-21 12:48 | 2019-06-15 | Show | GitHub Exploit DB Packet Storm |
| 246344 | 5.5 |
MEDIUM
Local |
qualcomm |
mdm9206_firmware mdm9607_firmware mdm9650_firmware msm8909w_firmware msm8996au_firmware qca6574au_firmware qcs605_firmware sd_210_firmware sd_212_firmware sd_205_firmware | Due to missing permissions in Android Manifest file, Sensitive information disclosure issue can happen in PCI RCS app in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon … |
NVD-CWE-noinfo
|
CVE-2018-13901 | 2024-11-21 12:48 | 2019-06-15 | Show | GitHub Exploit DB Packet Storm |
| 246345 | 9.8 |
CRITICAL
Network |
qualcomm |
mdm9150_firmware mdm9206_firmware mdm9607_firmware mdm9650_firmware mdm9655_firmware qcs405_firmware qcs605_firmware qualcomm_215_firmware sd_210_firmware sd_212_firmware | Out-of-Bounds write due to incorrect array index check in PMIC in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT… |
CWE-787
Out-of-bounds Write |
CVE-2018-13898 | 2024-11-21 12:48 | 2019-06-15 | Show | GitHub Exploit DB Packet Storm |
| 246346 | 6.1 |
MEDIUM
Network |
synacor | zimbra_collaboration_suite | Synacor Zimbra Collaboration Suite Collaboration before 8.8.11 has XSS in the AJAX and html web clients. |
CWE-79
Cross-site Scripting |
CVE-2018-14013 | 2024-11-21 12:48 | 2019-05-30 | Show | GitHub Exploit DB Packet Storm |
| 246347 | 9.8 |
CRITICAL
Network |
qualcomm |
mdm9206_firmware mdm9607_firmware mdm9650_firmware msm8909w_firmware msm8996au_firmware qcs605_firmware qm215_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd… |
Error in parsing PMT table frees the memory allocated for the map section but does not reset the context map section reference causing heap use after free issue in Snapdragon Auto, Snapdragon Compute… |
CWE-416
Use After Free |
CVE-2018-13925 | 2024-11-21 12:48 | 2019-05-25 | Show | GitHub Exploit DB Packet Storm |
| 246348 | 7.8 |
HIGH
Local |
qualcomm |
mdm9206_firmware mdm9607_firmware mdm9650_firmware msm8909w_firmware qcs605_firmware qm215_firmware sd_425_firmware sd_439_firmware sd_429_firmware sd_450_firmware sd_62… |
Use-after-free condition due to Improper handling of hrtimers when the PMU driver tries to access its events in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile,… |
CWE-416
Use After Free |
CVE-2018-13920 | 2024-11-21 12:48 | 2019-05-25 | Show | GitHub Exploit DB Packet Storm |
| 246349 | 7.8 |
HIGH
Local |
qualcomm |
mdm9150_firmware mdm9206_firmware mdm9607_firmware mdm9650_firmware msm8909w_firmware qcs605_firmware qm215_firmware sd_425_firmware sd_439_firmware sd_429_firmware sd_4… |
Processing messages after error may result in user after free memory fault in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdra… |
CWE-416
Use After Free |
CVE-2018-13899 | 2024-11-21 12:48 | 2019-05-25 | Show | GitHub Exploit DB Packet Storm |
| 246350 | 7.8 |
HIGH
Local |
qualcomm |
mdm9150_firmware mdm9206_firmware mdm9607_firmware mdm9650_firmware msm8909w_firmware msm8996au_firmware qcs605_firmware qm215_firmware sd_210_firmware sd_212_firmware s… |
Due to the missing permissions on several content providers of the RCS app in its android manifest file will lead to an unprivileged access to phone in Snapdragon Auto, Snapdragon Compute, Snapdragon… |
CWE-284
Improper Access Control |
CVE-2018-13895 | 2024-11-21 12:48 | 2019-05-25 | Show | GitHub Exploit DB Packet Storm |