|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 21, 2026, 6:01 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 253721 | 9.3 | 危険 | シスコシステムズ | - | Cisco WebEx WRF Player の atas32.dll におけるヒープベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-2878 | 2011-06-17 11:23 | 2009-12-16 | Show | GitHub Exploit DB Packet Storm |
| 253722 | 9.3 | 危険 | シスコシステムズ | - | Cisco WebEx WRF Player の ataudio.dll におけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-2877 | 2011-06-17 11:18 | 2009-12-16 | Show | GitHub Exploit DB Packet Storm |
| 253723 | 6.3 | 警告 | VMware | - | 複数の VMware 製品の HGFS におけるゲスト OS 上の任意のファイルを変更される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-2145 | 2011-06-17 10:59 | 2011-06-2 | Show | GitHub Exploit DB Packet Storm |
| 253724 | 6.9 | 警告 | VMware | - | 複数の VMware 製品の HGFS におけるゲスト OS 上の権限を取得される脆弱性 |
CWE-362
競合状態 |
CVE-2011-1787 | 2011-06-17 10:58 | 2011-06-2 | Show | GitHub Exploit DB Packet Storm |
| 253725 | 2.1 | 注意 | VMware | - | 複数の Vmware 製品の HGFS におけるホスト OS 上のファイルなどの存在有無を特定される脆弱性 |
CWE-200
情報漏えい |
CVE-2011-2146 | 2011-06-17 10:56 | 2011-06-2 | Show | GitHub Exploit DB Packet Storm |
| 253726 | 4.3 | 警告 | アドビシステムズ レッドハット |
- | Adobe Flash Player におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-2107 | 2011-06-17 10:54 | 2011-06-5 | Show | GitHub Exploit DB Packet Storm |
| 253727 | - | - | Rockwell Automation | - | RSLinx Classic EDS Hardware Installation Tool にバッファオーバーフローの脆弱性 | - | - | 2011-06-17 10:51 | 2011-05-31 | Show | GitHub Exploit DB Packet Storm |
| 253728 | 9.3 | 危険 | ジャストシステム | - | 一太郎シリーズにおける任意のコードが実行される脆弱性 |
CWE-noinfo
情報不足 |
CVE-2011-1331 | 2011-06-16 12:03 | 2011-06-16 | Show | GitHub Exploit DB Packet Storm |
| 253729 | 6.5 | 警告 | IBM | - | IBM DB2 における non-DDL ステートメントを実行される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-1846 | 2011-06-16 11:21 | 2011-04-26 | Show | GitHub Exploit DB Packet Storm |
| 253730 | 9.3 | 危険 | シスコシステムズ | - | Cisco WebEx WRF Player の atas32.dll におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-2875 | 2011-06-16 10:38 | 2009-12-16 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 22, 2026, 4:08 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 254171 | 7.8 |
HIGH
Local |
qualcomm |
mdm9206_firmware mdm9607_firmware mdm9650_firmware msm8996au_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_450_firmware sd_615_firmware sd_616_firmware sd_… |
Lack of Input Validation in SDMX API can lead to NULL pointer access in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear in versions MDM9206, MDM9607, MDM9650, MSM8996AU, SD 210/SD 212/SD… |
CWE-476
NULL Pointer Dereference |
CVE-2017-18298 | 2024-11-21 12:19 | 2018-10-23 | Show | GitHub Exploit DB Packet Storm |
| 254172 | 7.8 |
HIGH
Local |
qualcomm |
mdm9206_firmware mdm9607_firmware mdm9650_firmware msm8909w_firmware msm8996au_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_450_firmware sd_615_firmware s… |
Access control on applications is not applied while accessing SafeSwitch services can lead to improper access in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in version MDM9206, MDM9607,… |
NVD-CWE-noinfo
|
CVE-2017-18296 | 2024-11-21 12:19 | 2018-10-23 | Show | GitHub Exploit DB Packet Storm |
| 254173 | 7.8 |
HIGH
Local |
qualcomm |
mdm9206_firmware mdm9607_firmware mdm9650_firmware msm8909w_firmware msm8996au_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_450_firmware sd_615_firmware s… |
Possible buffer overflow if input is not null terminated in DSP Service module in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in version MDM9206, MDM9607, MDM9650, MSM8909W, MSM8996AU, … |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2017-18295 | 2024-11-21 12:19 | 2018-10-23 | Show | GitHub Exploit DB Packet Storm |
| 254174 | 7.8 |
HIGH
Local |
qualcomm |
fsm9055_firmware mdm9206_firmware mdm9607_firmware mdm9650_firmware msm8909w_firmware msm8996au_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_425_firmware … |
While reading file class type from ELF header, a buffer overread may happen if the ELF file size is less than the size of ELF64 header size in Small Cell SoC, Snapdragon Automobile, Snapdragon Mobile… |
CWE-125
Out-of-bounds Read |
CVE-2017-18294 | 2024-11-21 12:19 | 2018-10-23 | Show | GitHub Exploit DB Packet Storm |
| 254175 | 7.8 |
HIGH
Local |
qualcomm |
mdm9206_firmware mdm9607_firmware mdm9650_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_425_firmware sd_430_firmware sd_450_firmware sd_625_firmware sd_650… |
When a particular GPIO is protected by blocking access to the corresponding GPIO resource registers, the protection can be bypassed using the corresponding banked GPIO registers instead in Snapdragon… |
NVD-CWE-noinfo
|
CVE-2017-18293 | 2024-11-21 12:19 | 2018-10-23 | Show | GitHub Exploit DB Packet Storm |
| 254176 | 5.5 |
MEDIUM
Local |
qualcomm |
msm8909w_firmware msm8996au_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_410_firmware sd_412_firmware sd_425_firmware sd_430_firmware sd_450_firmware sd_6… |
Secure app running in non secure space can restart TZ by calling Widevine app API repeatedly in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear in versions MSM8909W, MSM8996AU, SD 210/SD… |
CWE-20
Improper Input Validation |
CVE-2017-18292 | 2024-11-21 12:19 | 2018-10-23 | Show | GitHub Exploit DB Packet Storm |
| 254177 | 7.8 |
HIGH
Local |
qualcomm |
mdm9206_firmware mdm9607_firmware mdm9650_firmware sd210_firmware sd212_firmware sd205_firmware sd425_firmware sd430_firmware sd450_firmware sd625_firmware sd650_firmwar… |
Non-secure SW can cause SDCC to generate secure bus accesses, which may expose RPM access in Snapdragon Mobile, Snapdragon Wear in version MDM9206, MDM9607, MDM9650, SD 210/SD 212/SD 205, SD 425, SD … |
NVD-CWE-noinfo
|
CVE-2017-18282 | 2024-11-21 12:19 | 2018-10-23 | Show | GitHub Exploit DB Packet Storm |
| 254178 | 5.5 |
MEDIUM
Local |
qualcomm |
mdm9206_firmware mdm9607_firmware mdm9640_firmware mdm9650_firmware msm8909w_firmware qcn5502_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_425_firmware sd… |
When dynamic memory allocation fails, currently the process sleeps for one second and continues with infinite loop without retrying for memory allocation in Snapdragon Automobile, Snapdragon Mobile, … |
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop') |
CVE-2017-18277 | 2024-11-21 12:19 | 2018-10-23 | Show | GitHub Exploit DB Packet Storm |
| 254179 | 7.8 |
HIGH
Local |
qualcomm |
mdm9635m_firmware sd_400_firmware sd_410_firmware sd_412_firmware sd_425_firmware sd_427_firmware sd_430_firmware sd_435_firmware sd_450_firmware sd_615_firmware sd_616_… |
In a device, with screen size 1440x2560, the check of contiguous buffer will overflow on certain buffer size resulting in an Integer Overflow or Wraparound in System UI in Snapdragon Automobile, Snap… |
CWE-190
Integer Overflow or Wraparound |
CVE-2017-18172 | 2024-11-21 12:19 | 2018-10-23 | Show | GitHub Exploit DB Packet Storm |
| 254180 | 8.8 |
HIGH
Adjacent |
qualcomm |
qca9379_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_410_firmware sd_412_firmware sd_425_firmware sd_427_firmware sd_430_firmware sd_435_firmware sd_450_f… |
Improper input validation for GATT data packet received in Bluetooth Controller function can lead to possible memory corruption in Snapdragon Mobile in version QCA9379, SD 210/SD 212/SD 205, SD 410/1… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2017-18171 | 2024-11-21 12:19 | 2018-10-23 | Show | GitHub Exploit DB Packet Storm |