|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":April 28, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 253041 | 3.6 | 注意 | サイバートラスト株式会社 D-Bus レッドハット |
- | D-Bus の _dbus_validate_signature_with_reason 関数におけるシグネチャを偽装される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2009-1189 | 2010-02-5 14:22 | 2009-04-27 | Show | GitHub Exploit DB Packet Storm |
| 253042 | 6.5 | 警告 | シスコシステムズ | - | Cisco ASA のデフォルト設定におけるアクセス制限を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-4455 | 2010-02-4 11:20 | 2009-12-17 | Show | GitHub Exploit DB Packet Storm |
| 253043 | 4 | 警告 | IBM | - | IBM DB2 におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-4439 | 2010-02-4 11:20 | 2009-12-28 | Show | GitHub Exploit DB Packet Storm |
| 253044 | 6.5 | 警告 | IBM | - | IBM DB2 におけるデータを使用される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-4438 | 2010-02-4 11:19 | 2009-12-28 | Show | GitHub Exploit DB Packet Storm |
| 253045 | 10 | 危険 | IBM | - | IBM DB2 の Spatial Extender コンポーネントに同梱されているストアドプロシージャにおける脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-4335 | 2010-02-4 11:19 | 2009-12-16 | Show | GitHub Exploit DB Packet Storm |
| 253046 | 4 | 警告 | IBM | - | IBM DB2 の DRDA Services コンポーネントにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-4328 | 2010-02-4 11:19 | 2009-12-16 | Show | GitHub Exploit DB Packet Storm |
| 253047 | 7.2 | 危険 | IBM | - | IBM DB2 の Install コンポーネントにおける脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-4331 | 2010-02-4 11:19 | 2009-12-16 | Show | GitHub Exploit DB Packet Storm |
| 253048 | 7.5 | 危険 | IBM | - | IBM DB2 の Relational Data Services コンポーネントにおけるパスワードの引数を取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2009-4333 | 2010-02-4 11:19 | 2009-12-16 | Show | GitHub Exploit DB Packet Storm |
| 253049 | 7.2 | 危険 | IBM | - | IBM DB2 の Engine Utilities コンポーネントの db2licm における脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-4330 | 2010-02-4 11:18 | 2009-12-16 | Show | GitHub Exploit DB Packet Storm |
| 253050 | 4 | 警告 | IBM | - | IBM DB2 の Engine Utilities コンポーネントにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-4329 | 2010-02-4 11:18 | 2009-12-16 | Show | GitHub Exploit DB Packet Storm |
Update Date:April 28, 2026, 4:09 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 268971 | 7.5 |
HIGH
Network |
fedoraproject suse redhat debian canonical ntp novell opensuse siemens oracle |
fedora manager_proxy linux_enterprise_debuginfo manager linux_enterprise_server openstack_cloud enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server | The ULOGTOD function in ntp.d in SNTP before 4.2.7p366 does not properly perform type conversions from a precision value to a double, which allows remote attackers to cause a denial of service (infin… |
CWE-704
Incorrect Type Conversion or Cast |
CVE-2015-5219 | 2024-11-21 11:32 | 2017-07-21 | Show | GitHub Exploit DB Packet Storm |
| 268972 | 7.5 |
HIGH
Network |
fedoraproject redhat debian canonical ntp |
fedora enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_hpc_node debian_linux ubuntu_linux ntp |
ntp_openssl.m4 in ntpd in NTP before 4.2.7p112 allows remote attackers to cause a denial of service (segmentation fault) via a crafted statistics or filegen configuration command that is not enabled … |
CWE-20
Improper Input Validation |
CVE-2015-5195 | 2024-11-21 11:32 | 2017-07-21 | Show | GitHub Exploit DB Packet Storm |
| 268973 | 7.5 |
HIGH
Network |
fedoraproject suse redhat debian canonical ntp |
fedora manager_proxy linux_enterprise_debuginfo manager linux_enterprise_server openstack_cloud enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server | The log_config_command function in ntp_parser.y in ntpd in NTP before 4.2.7p42 allows remote attackers to cause a denial of service (ntpd crash) via crafted logconfig commands. |
CWE-20
Improper Input Validation |
CVE-2015-5194 | 2024-11-21 11:32 | 2017-07-21 | Show | GitHub Exploit DB Packet Storm |
| 268974 | 8.1 |
HIGH
Network |
theforeman | foreman | Foreman after 1.1 and before 1.9.0-RC1 does not redirect HTTP requests to HTTPS when the require_ssl setting is set to true, which allows remote attackers to obtain user credentials via a man-in-the-… |
CWE-200
Information Exposure |
CVE-2015-5152 | 2024-11-21 11:32 | 2017-07-17 | Show | GitHub Exploit DB Packet Storm |
| 268975 | 7.5 |
HIGH
Network |
elasticsearch elastic |
logstash | Logstash 1.5.x before 1.5.3 and 1.4.x before 1.4.4 allows remote attackers to read communications between Logstash Forwarder agent and Logstash server. |
CWE-200
Information Exposure |
CVE-2015-5378 | 2024-11-21 11:32 | 2017-06-28 | Show | GitHub Exploit DB Packet Storm |
| 268976 | 7.5 |
HIGH
Network |
canonical gnu |
ubuntu_linux glibc |
res_query in libresolv in glibc before 2.25 allows remote attackers to cause a denial of service (NULL pointer dereference and process crash). |
CWE-476
NULL Pointer Dereference |
CVE-2015-5180 | 2024-11-21 11:32 | 2017-06-28 | Show | GitHub Exploit DB Packet Storm |
| 268977 | 8.1 |
HIGH
Network |
cornelisnetworks |
opa-ff opa-fm |
Race conditions in opa-fm before 10.4.0.0.196 and opa-ff before 10.4.0.0.197. |
CWE-362
Race Condition |
CVE-2015-5232 | 2024-11-21 11:32 | 2017-06-8 | Show | GitHub Exploit DB Packet Storm |
| 268978 | 7.5 |
HIGH
Network |
apache | cxf_fediz | Application plugins in Apache CXF Fediz before 1.1.3 and 1.2.x before 1.2.1 allow remote attackers to cause a denial of service. |
CWE-20
Improper Input Validation |
CVE-2015-5175 | 2024-11-21 11:32 | 2017-06-8 | Show | GitHub Exploit DB Packet Storm |
| 268979 | 9.6 |
CRITICAL
Network |
vmware debian |
spring_framework debian_linux |
Under some situations, the Spring Framework 4.2.0 to 4.2.1, 4.0.0 to 4.1.7, 3.2.0 to 3.2.14 and older unsupported versions is vulnerable to a Reflected File Download (RFD) attack. The attack involves… |
CWE-552
Files or Directories Accessible to External Parties |
CVE-2015-5211 | 2024-11-21 11:32 | 2017-05-26 | Show | GitHub Exploit DB Packet Storm |
| 268980 | 7.5 |
HIGH
Network |
teradata |
teradata_express teradata_gateway |
Teradata Gateway before 15.00.03.02-1 and 15.10.x before 15.10.00.01-1 and TD Express before 15.00.02.08_Sles10 and 15.00.02.08_Sles11 allow remote attackers to cause a denial of service (database cr… |
CWE-20
Improper Input Validation |
CVE-2015-5401 | 2024-11-21 11:32 | 2017-05-23 | Show | GitHub Exploit DB Packet Storm |