|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":April 29, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 253141 | 9.3 | 危険 | マイクロソフト | - | Microsoft Windows の kernel における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-2514 | 2010-01-4 15:24 | 2009-11-10 | Show | GitHub Exploit DB Packet Storm |
| 253142 | 6.8 | 警告 | マイクロソフト | - | Microsoft Windows の kernel の Graphics Device Interface (GDI) における権限を取得される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2009-2513 | 2010-01-4 15:24 | 2009-11-10 | Show | GitHub Exploit DB Packet Storm |
| 253143 | 6.8 | 警告 | マイクロソフト | - | Microsoft Windows の kernel における権限を取得される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2009-1127 | 2010-01-4 15:24 | 2009-11-10 | Show | GitHub Exploit DB Packet Storm |
| 253144 | 10 | 危険 | マイクロソフト | - | Microsoft Windows の License Logging Server (llssrv.exe) における任意のコードを実行される脆弱性 |
CWE-119
バッファエラー |
CVE-2009-2523 | 2010-01-4 15:24 | 2009-11-10 | Show | GitHub Exploit DB Packet Storm |
| 253145 | 9.3 | 危険 | マイクロソフト | - | Microsoft Windows の Web Services on Devices API (WSDAPI) における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-2512 | 2010-01-4 15:23 | 2009-11-10 | Show | GitHub Exploit DB Packet Storm |
| 253146 | 10 | 危険 | アップル VMware サン・マイクロシステムズ |
- | Sun Java SE の Provider クラスにおける詳細不明な脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-2722 | 2010-01-4 14:56 | 2009-08-10 | Show | GitHub Exploit DB Packet Storm |
| 253147 | 10 | 危険 | アップル VMware サン・マイクロシステムズ |
- | Sun Java SE の Provider クラスにおける詳細不明な脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-2723 | 2010-01-4 14:55 | 2009-08-10 | Show | GitHub Exploit DB Packet Storm |
Update Date:April 29, 2026, 4:51 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 266981 | 7.5 |
HIGH
Network |
ntp oracle debian netapp redhat |
ntp linux debian_linux clustered_data_ontap data_ontap oncommand_unified_manager oncommand_performance_manager enterprise_linux_desktop enterprise_linux_workstation enterpr… |
Memory leak in the CRYPTO_ASSOC function in ntpd in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote attackers to cause a denial of service (memory consumption). |
CWE-772
Missing Release of Resource after Effective Lifetime |
CVE-2015-7701 | 2024-11-21 11:37 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 266982 | 7.5 |
HIGH
Network |
ntp oracle debian netapp redhat |
ntp linux debian_linux clustered_data_ontap data_ontap oncommand_unified_manager oncommand_performance_manager enterprise_linux_desktop enterprise_linux_workstation enterpr… |
The crypto_xmit function in ntpd in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote attackers to cause a denial of service (crash). NOTE: This vulnerability exists due to an incomple… |
CWE-20
Improper Input Validation |
CVE-2015-7692 | 2024-11-21 11:37 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 266983 | 7.5 |
HIGH
Network |
ntp oracle debian netapp redhat |
ntp linux debian_linux clustered_data_ontap data_ontap oncommand_unified_manager oncommand_performance_manager enterprise_linux_desktop enterprise_linux_workstation enterpr… |
The crypto_xmit function in ntpd in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote attackers to cause a denial of service (crash) via crafted packets containing particular autokey op… |
CWE-20
Improper Input Validation |
CVE-2015-7691 | 2024-11-21 11:37 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 266984 | 7.0 |
HIGH
Local |
samsung | samsung_mobile | Race condition in the ioctl implementation in the Samsung Graphics 2D driver (aka /dev/fimg2d) in Samsung devices with Android L(5.0/5.1) allows local users to trigger memory errors by leveraging def… |
CWE-362
Race Condition |
CVE-2015-7891 | 2024-11-21 11:37 | 2017-08-3 | Show | GitHub Exploit DB Packet Storm |
| 266985 | 7.5 |
HIGH
Network |
openpgpjs | openpgpjs | s2k.js in OpenPGP.js will decrypt arbitrary messages regardless of passphrase for crafted PGP keys which allows remote attackers to bypass authentication if message decryption is used as an authentic… |
CWE-310
Cryptographic Issues |
CVE-2015-8013 | 2024-11-21 11:37 | 2017-07-26 | Show | GitHub Exploit DB Packet Storm |
| 266986 | 9.8 |
CRITICAL
Network |
mediawiki | mediawiki | The MWOAuthDataStore::lookup_token function in Extension:OAuth for MediaWiki 1.25.x before 1.25.3, 1.24.x before 1.24.4, and before 1.23.11 does not properly validate the signature when checking the … |
CWE-255
Credentials Management |
CVE-2015-8009 | 2024-11-21 11:37 | 2017-07-25 | Show | GitHub Exploit DB Packet Storm |
| 266987 | 7.5 |
HIGH
Network |
ntp oracle debian netapp redhat |
ntp linux debian_linux clustered_data_ontap data_ontap oncommand_unified_manager oncommand_performance_manager enterprise_linux_desktop enterprise_linux_workstation enterpr… |
The "pidfile" or "driftfile" directives in NTP ntpd 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77, when ntpd is configured to allow remote configuration, allows remote attackers with an IP address th… |
CWE-20
Improper Input Validation |
CVE-2015-7703 | 2024-11-21 11:37 | 2017-07-24 | Show | GitHub Exploit DB Packet Storm |
| 266988 | 5.5 |
MEDIUM
Local |
samsung | samsung_mobile | Samsung Gallery in the Samsung Galaxy S6 allows local users to cause a denial of service (process crash). |
CWE-284
Improper Access Control |
CVE-2015-7898 | 2024-11-21 11:37 | 2017-06-28 | Show | GitHub Exploit DB Packet Storm |
| 266989 | 5.5 |
MEDIUM
Local |
samsung | samsung_mobile | Samsung Gallery on the Samsung Galaxy S6 allows local users to cause a denial of service (process crash). |
CWE-284
Improper Access Control |
CVE-2015-7895 | 2024-11-21 11:37 | 2017-06-28 | Show | GitHub Exploit DB Packet Storm |
| 266990 | 7.5 |
HIGH
Network |
zohocorp | manageengine_firewall_analyzer | ManageEngine Firewall Analyzer before 8.0 does not restrict access permissions. |
CWE-275
Permission Issues |
CVE-2015-7781 | 2024-11-21 11:37 | 2017-06-28 | Show | GitHub Exploit DB Packet Storm |