|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 1, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 253931 | 7.5 | 危険 | 日立 | - | Cosminexus、Processing Kit for XML および Hitachi Developer's Kit for Java におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
- | 2010-02-2 11:42 | 2009-12-22 | Show | GitHub Exploit DB Packet Storm |
| 253932 | 4.3 | 警告 | VMware | - | 複数の VMware 製品におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3731 | 2010-02-1 11:52 | 2009-12-15 | Show | GitHub Exploit DB Packet Storm |
| 253933 | 10 | 危険 | サイバートラスト株式会社 Linux |
- | Linux kernel および gxsnmp パッケージの asn1 の実装における任意のコードを実行される脆弱性 |
CWE-119
バッファエラー |
CVE-2008-1673 | 2010-02-1 11:51 | 2008-06-10 | Show | GitHub Exploit DB Packet Storm |
| 253934 | 10 | 危険 | ヒューレット・パッカード | - | 複数の Symantec 製品の VRTSweb における任意のコードを実行される脆弱性 |
CWE-287
不適切な認証 |
CVE-2009-3027 | 2010-02-1 11:51 | 2009-12-8 | Show | GitHub Exploit DB Packet Storm |
| 253935 | 9.3 | 危険 | KDE project Glyph & Cog, LLC GNOME Project サイバートラスト株式会社 レッドハット |
- | Xpdf、gpdf および kpdf の FoFiType1::parse 関数における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-4035 | 2010-01-29 09:54 | 2009-12-16 | Show | GitHub Exploit DB Packet Storm |
| 253936 | 7.8 | 危険 | Mozilla Foundation | - | Mozilla Firefox/SeaMonkey の GeckoActiveXObject 関数における重要な情報を取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2009-3987 | 2010-01-29 09:54 | 2009-12-15 | Show | GitHub Exploit DB Packet Storm |
| 253937 | 7.6 | 危険 | サイバートラスト株式会社 Mozilla Foundation レッドハット |
- | Mozilla Firefox/SeaMonkey における任意の JavaScript を実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-3986 | 2010-01-29 09:54 | 2009-12-15 | Show | GitHub Exploit DB Packet Storm |
| 253938 | 6.8 | 警告 | サイバートラスト株式会社 Mozilla Foundation レッドハット |
- | Mozilla Firefox/SeaMonkey におけるコンテンツを偽装される脆弱性 |
CWE-Other
その他 |
CVE-2009-3985 | 2010-01-29 09:53 | 2009-12-15 | Show | GitHub Exploit DB Packet Storm |
| 253939 | 6.8 | 警告 | サイバートラスト株式会社 Mozilla Foundation レッドハット |
- | Mozilla Firefox/SeaMonkey における http URL または file URL の SSL インジケータを偽装される脆弱性 |
CWE-Other
その他 |
CVE-2009-3984 | 2010-01-29 09:53 | 2009-12-15 | Show | GitHub Exploit DB Packet Storm |
| 253940 | 6.8 | 警告 | サイバートラスト株式会社 Mozilla Foundation レッドハット |
- | Mozilla Firefox/SeaMonkey における認証されたリクエストを任意のアプリケーションに送信される脆弱性 |
CWE-Other
その他 |
CVE-2009-3983 | 2010-01-29 09:53 | 2009-12-15 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 1, 2026, 4:54 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 252481 | 5.3 |
MEDIUM
Network |
trendmicro | officescan | Information disclosure vulnerabilities in Trend Micro OfficeScan 11.0 and XG may allow unauthenticated users who can access the OfficeScan server to query the network's NT domain or the PHP version a… |
CWE-200
Information Exposure |
CVE-2017-14085 | 2024-11-21 12:12 | 2017-10-6 | Show | GitHub Exploit DB Packet Storm |
| 252482 | 8.1 |
HIGH
Network |
trendmicro | officescan | A potential Man-in-the-Middle (MitM) attack vulnerability in Trend Micro OfficeScan 11.0 and XG may allow attackers to execute arbitrary code on vulnerable installations. |
NVD-CWE-noinfo
|
CVE-2017-14084 | 2024-11-21 12:12 | 2017-10-6 | Show | GitHub Exploit DB Packet Storm |
| 252483 | 7.5 |
HIGH
Network |
trendmicro | officescan | A vulnerability in Trend Micro OfficeScan 11.0 and XG allows remote unauthenticated users who can access the system to download the OfficeScan encryption file. |
NVD-CWE-noinfo
|
CVE-2017-14083 | 2024-11-21 12:12 | 2017-10-6 | Show | GitHub Exploit DB Packet Storm |
| 252484 | 6.1 |
MEDIUM
Network |
hp | ucmdb_foundation_software | A remote cross-site scripting vulnerability in HP UCMDB Foundation Software versions 10.10, 10.11, 10.20, 10.21, 10.22, 10.30, 10.31, 10.32, and 10.33 could be remotely exploited to allow cross-site … |
CWE-79
Cross-site Scripting |
CVE-2017-14354 | 2024-11-21 12:12 | 2017-10-6 | Show | GitHub Exploit DB Packet Storm |
| 252485 | 8.8 |
HIGH
Network |
hp | ucmdb_foundation_software | A remote code execution vulnerability in HP UCMDB Foundation Software versions 10.10, 10.11, 10.20, 10.21, 10.22, 10.30, 10.31, 10.32, and 10.33, could be remotely exploited to allow code execution. |
CWE-94
Code Injection |
CVE-2017-14353 | 2024-11-21 12:12 | 2017-10-6 | Show | GitHub Exploit DB Packet Storm |
| 252486 | 9.8 |
CRITICAL
Network |
thekelleys redhat canonical debian opensuse suse nvidia huawei arista siemens arubanetworks synology |
dnsmasq enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server ubuntu_linux debian_linux leap linux_enterprise_server linux_enterprise_debuginfo linu… |
Heap-based buffer overflow in dnsmasq before 2.78 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted DNS response. |
CWE-787
Out-of-bounds Write |
CVE-2017-14491 | 2024-11-21 12:12 | 2017-10-4 | Show | GitHub Exploit DB Packet Storm |
| 252487 | 7.5 |
HIGH
Network |
redhat debian novell canonical thekelleys |
enterprise_linux_desktop android enterprise_linux_workstation enterprise_linux_server debian_linux leap ubuntu_linux dnsmasq |
Integer underflow in the add_pseudoheader function in dnsmasq before 2.78 , when the --add-mac, --add-cpe-id or --add-subnet option is specified, allows remote attackers to cause a denial of service … |
CWE-191
Integer Underflow (Wrap or Wraparound) |
CVE-2017-14496 | 2024-11-21 12:12 | 2017-10-3 | Show | GitHub Exploit DB Packet Storm |
| 252488 | 7.5 |
HIGH
Network |
redhat debian canonical thekelleys |
enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server debian_linux ubuntu_linux dnsmasq |
Memory leak in dnsmasq before 2.78, when the --add-mac, --add-cpe-id or --add-subnet option is specified, allows remote attackers to cause a denial of service (memory consumption) via vectors involvi… |
CWE-772
Missing Release of Resource after Effective Lifetime |
CVE-2017-14495 | 2024-11-21 12:12 | 2017-10-3 | Show | GitHub Exploit DB Packet Storm |
| 252489 | 5.9 |
MEDIUM
Network |
redhat debian novell canonical thekelleys |
enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server debian_linux leap ubuntu_linux dnsmasq |
dnsmasq before 2.78, when configured as a relay, allows remote attackers to obtain sensitive memory information via vectors involving handling DHCPv6 forwarded requests. |
CWE-200
Information Exposure |
CVE-2017-14494 | 2024-11-21 12:12 | 2017-10-3 | Show | GitHub Exploit DB Packet Storm |
| 252490 | 9.8 |
CRITICAL
Network |
redhat debian canonical opensuse thekelleys |
enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server debian_linux ubuntu_linux leap dnsmasq |
Stack-based buffer overflow in dnsmasq before 2.78 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted DHCPv6 request. |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2017-14493 | 2024-11-21 12:12 | 2017-10-3 | Show | GitHub Exploit DB Packet Storm |