|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 20, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 256491 | 9.3 | 危険 | マイクロソフト | - | 複数の Microsoft 製品のテキストコンバーターにおける整数オーバーフローの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-2506 | 2010-01-22 10:27 | 2009-12-8 | Show | GitHub Exploit DB Packet Storm |
| 256492 | 9 | 危険 | マイクロソフト | - | Microsoft Windows の Active Directory フェデレーションサービスにおける任意のコードを実行される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2009-2509 | 2010-01-22 10:27 | 2009-12-8 | Show | GitHub Exploit DB Packet Storm |
| 256493 | 6.9 | 警告 | マイクロソフト | - | Microsoft Windows の Active Directory フェデレーションサービスのシングルサインオン実装における認証情報を取得される脆弱性 |
CWE-255
証明書・パスワード管理 |
CVE-2009-2508 | 2010-01-22 10:27 | 2009-12-8 | Show | GitHub Exploit DB Packet Storm |
| 256494 | 6.8 | 警告 | マイクロソフト | - | Microsoft Windows の LSASS におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2009-3675 | 2010-01-22 10:27 | 2009-12-8 | Show | GitHub Exploit DB Packet Storm |
| 256495 | 9.3 | 危険 | マイクロソフト | - | Microsoft Project における任意のコードを実行される脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2009-0102 | 2010-01-22 10:26 | 2009-12-8 | Show | GitHub Exploit DB Packet Storm |
| 256496 | 9.3 | 危険 | マイクロソフト | - | Microsoft Internet Explorer におけるメモリ破損の脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-3673 | 2010-01-22 10:26 | 2009-12-8 | Show | GitHub Exploit DB Packet Storm |
| 256497 | 9.3 | 危険 | マイクロソフト | - | Microsoft Internet Explorer におけるメモリ破損の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2009-3671 | 2010-01-22 10:26 | 2009-12-8 | Show | GitHub Exploit DB Packet Storm |
| 256498 | 10 | 危険 | マイクロソフト | - | Microsoft Windows のインターネット認証サービスにおけるネットワークリソースにアクセスされる脆弱性 |
CWE-255 CWE-94 |
CVE-2009-3677 | 2010-01-22 10:24 | 2009-12-8 | Show | GitHub Exploit DB Packet Storm |
| 256499 | 10 | 危険 | マイクロソフト | - | Microsoft Windows のインターネット認証サービスにおける任意のコードを実行される脆弱性 |
CWE-287
不適切な認証 |
CVE-2009-2505 | 2010-01-22 10:24 | 2009-12-8 | Show | GitHub Exploit DB Packet Storm |
| 256500 | 6.9 | 警告 | acpid | - | acpid の umask におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-4235 | 2010-01-21 11:44 | 2009-12-7 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 21, 2026, 4:10 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 285881 | 9.8 |
CRITICAL
Network |
qualcomm |
mdm9206_firmware mdm9607_firmware mdm9650_firmware msm8909w_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_400_firmware sd_410_firmware sd_412_firmware sd_4… |
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9650, MSM8909W, SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 425, SD… |
CWE-129
Improper Validation of Array Index |
CVE-2014-10048 | 2024-11-21 11:03 | 2018-04-18 | Show | GitHub Exploit DB Packet Storm |
| 285882 | 9.8 |
CRITICAL
Network |
qualcomm |
mdm9615_firmware mdm9625_firmware mdm9635m_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_400_firmware sd_410_firmware sd_412_firmware sd_615_firmware sd_61… |
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9615, MDM9625, MDM9635M, SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 615/16/SD 415, SD 800, SD 808, and S… |
CWE-416
Use After Free |
CVE-2014-10046 | 2024-11-21 11:03 | 2018-04-18 | Show | GitHub Exploit DB Packet Storm |
| 285883 | 9.8 |
CRITICAL
Network |
qualcomm |
mdm9206_firmware mdm9607_firmware mdm9615_firmware mdm9625_firmware mdm9635m_firmware mdm9640_firmware ipq4019_firmware mdm9650_firmware mdm9655_firmware msm8909w_firmware<… |
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear IPQ4019, MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MDM9640, MDM9650, MDM9655, MSM890… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2014-10045 | 2024-11-21 11:03 | 2018-04-18 | Show | GitHub Exploit DB Packet Storm |
| 285884 | 7.5 |
HIGH
Network |
qualcomm |
msm8909w_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_400_firmware sd_410_firmware sd_412_firmware sd_800_firmware |
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MSM8909W, SD 210/SD 212/SD 205, SD 400, SD 410/12, and SD 800, while reading PlayReady r… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2014-10043 | 2024-11-21 11:03 | 2018-04-18 | Show | GitHub Exploit DB Packet Storm |
| 285885 | 7.8 |
HIGH
Local |
s3dvt_project | s3dvt | The pipe_init_terminal function in main.c in s3dvt allows local users to gain privileges by leveraging setuid permissions and usage of bash 4.3 and earlier. NOTE: This vulnerability exists because o… |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2014-1226 | 2024-11-21 11:03 | 2018-04-7 | Show | GitHub Exploit DB Packet Storm |
| 285886 | 7.8 |
HIGH
Local |
coreftp | core_ftp | Multiple buffer overflows in Core FTP Server before 1.2 build 508 allow local users to gain privileges via vectors related to reading data from config.dat and Windows Registry. |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2014-1215 | 2024-11-21 11:03 | 2018-03-21 | Show | GitHub Exploit DB Packet Storm |
| 285887 | 9.8 |
CRITICAL
Network |
zsh_project | zsh | In utils.c in zsh before 5.0.6, there is a buffer overflow when scanning very long directory paths for symbolic links. |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2014-10072 | 2024-11-21 11:03 | 2018-02-28 | Show | GitHub Exploit DB Packet Storm |
| 285888 | 9.8 |
CRITICAL
Network |
zsh canonical |
zsh ubuntu_linux |
In exec.c in zsh before 5.0.7, there is a buffer overflow for very long fds in the ">& fd" syntax. |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2014-10071 | 2024-11-21 11:03 | 2018-02-28 | Show | GitHub Exploit DB Packet Storm |
| 285889 | 7.8 |
HIGH
Local |
zsh_project | zsh | zsh before 5.0.7 allows evaluation of the initial values of integer variables imported from the environment (instead of treating them as literal numbers). That could allow local privilege escalation,… |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2014-10070 | 2024-11-21 11:03 | 2018-02-28 | Show | GitHub Exploit DB Packet Storm |
| 285890 | 7.5 |
HIGH
Network |
hitrontech | cve-30360_firmware | Hitron CVE-30360 devices use a 578A958E3DD933FC DES key that is shared across different customers' installations, which makes it easier for attackers to obtain sensitive information by decrypting a b… |
CWE-310
Cryptographic Issues |
CVE-2014-10069 | 2024-11-21 11:03 | 2018-01-8 | Show | GitHub Exploit DB Packet Storm |