|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 7, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 256581 | 4.3 | 警告 | - | Google Chrome の net/base/escape.cc における整数アンダーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2008-6995 | 2010-10-19 14:53 | 2009-08-19 | Show | GitHub Exploit DB Packet Storm | |
| 256582 | 9.3 | 危険 | - | Google Chrome の SaveAs 機能におけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2008-6994 | 2010-10-19 14:52 | 2009-08-19 | Show | GitHub Exploit DB Packet Storm | |
| 256583 | 5 | 警告 | - | Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-119
バッファエラー |
CVE-2009-2578 | 2010-10-19 14:51 | 2009-07-22 | Show | GitHub Exploit DB Packet Storm | |
| 256584 | 9.3 | 危険 | - | Google Chrome における任意のコードを実行される脆弱性 |
CWE-119
バッファエラー |
CVE-2009-2556 | 2010-10-19 14:51 | 2009-07-16 | Show | GitHub Exploit DB Packet Storm | |
| 256585 | 9.3 | 危険 | - | Google Chrome の src/jsregexp.cc におけるヒープベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-2555 | 2010-10-19 14:50 | 2009-07-16 | Show | GitHub Exploit DB Packet Storm | |
| 256586 | 4.3 | 警告 | - | Google Chrome における javascript: URI をブロックしない脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-2352 | 2010-10-19 14:50 | 2009-02-3 | Show | GitHub Exploit DB Packet Storm | |
| 256587 | 9.3 | 危険 | - | Google Chrome の browser kernel におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-2121 | 2010-10-19 14:50 | 2009-06-22 | Show | GitHub Exploit DB Packet Storm | |
| 256588 | 6.8 | 警告 | - | Google Chrome における任意の https サイトになりすまされる脆弱性 |
CWE-287
不適切な認証 |
CVE-2009-2071 | 2010-10-19 14:49 | 2009-03-23 | Show | GitHub Exploit DB Packet Storm | |
| 256589 | 6.4 | 警告 | The PHP Group | - | PHP の zend_ini.c 内にある zend_restore_ini_entry_cb 関数における重要な情報を取得される脆弱性 |
CWE-Other
その他 |
CVE-2009-2626 | 2010-10-18 15:22 | 2009-12-1 | Show | GitHub Exploit DB Packet Storm |
| 256590 | 4 | 警告 | オラクル | - | Oracle iPlanet Web Server におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2010-3544 | 2010-10-18 12:03 | 2010-10-18 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 7, 2026, 4:13 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 246311 | 4.8 |
MEDIUM
Network |
seopanel | seo_panel | The Website Manager module in SEO Panel 3.13.0 and earlier is affected by a stored Cross-Site Scripting (XSS) vulnerability, allowing remote authenticated attackers to inject arbitrary web script or … |
CWE-79
Cross-site Scripting |
CVE-2018-14384 | 2024-11-21 12:48 | 2020-03-3 | Show | GitHub Exploit DB Packet Storm |
| 246312 | 7.8 |
HIGH
Local |
qualcomm |
apq8009_firmware apq8017_firmware apq8053_firmware apq8096_firmware apq8096au_firmware apq8098_firmware ipq8074_firmware mdm9150_firmware mdm9206_firmware mdm9607_firmware<… |
Out-of-bounds memory access in Qurt kernel function when using the identifier to access Qurt kernel buffer to retrieve thread data. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Sn… |
CWE-120
Classic Buffer Overflow |
CVE-2018-13916 | 2024-11-21 12:48 | 2019-11-22 | Show | GitHub Exploit DB Packet Storm |
| 246313 | 9.1 |
CRITICAL
Network |
cospas-sarsat | cospas-sarsat_system | The COSPAS-SARSAT protocol allows remote attackers to forge messages, replay encrypted messages, conduct denial of service attacks, and send private messages (unrelated to distress alerts) via a craf… |
CWE-310
Cryptographic Issues |
CVE-2018-14062 | 2024-11-21 12:48 | 2019-08-16 | Show | GitHub Exploit DB Packet Storm |
| 246314 | 6.5 |
MEDIUM
Adjacent |
arista | eos | Arista EOS through 4.21.0F allows a crash because 802.1x authentication is mishandled. |
CWE-287
Improper Authentication |
CVE-2018-14008 | 2024-11-21 12:48 | 2019-08-16 | Show | GitHub Exploit DB Packet Storm |
| 246315 | 7.5 |
HIGH
Network |
ttpsc | the_scheduler | The Transition Technologies "The Scheduler" app 5.1.3 for Jira allows XXE due to a weakly configured/parameterized XML parser. It was fixed in the versions 5.2.1 and 3.3.7 |
CWE-611
XXE |
CVE-2018-14383 | 2024-11-21 12:48 | 2019-08-8 | Show | GitHub Exploit DB Packet Storm |
| 246316 | 7.5 |
HIGH
Network |
qualcomm |
mdm9206_firmware mdm9607_firmware mdm9640_firmware mdm9650_firmware msm8909w_firmware msm8996au_firmware qcs605_firmware sd_210_firmware sd_212_firmware sd_205_firmware … |
Clients hostname gets added to DNS record on device which is running dnsmasq resulting in an information exposure in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Indu… |
CWE-200
Information Exposure |
CVE-2018-13897 | 2024-11-21 12:48 | 2019-07-26 | Show | GitHub Exploit DB Packet Storm |
| 246317 | 7.8 |
HIGH
Local |
qualcomm |
mdm9206_firmware mdm9607_firmware mdm9650_firmware mdm9655_firmware msm8996au_firmware qcs404_firmware qcs605_firmware sd_410_firmware sd_412_firmware sd_636_firmware sd… |
Debug policy with invalid signature can be loaded when the debug policy functionality is disabled by using the parallel image loading in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, … |
CWE-287
Improper Authentication |
CVE-2018-13927 | 2024-11-21 12:48 | 2019-07-22 | Show | GitHub Exploit DB Packet Storm |
| 246318 | 9.8 |
CRITICAL
Network |
qualcomm |
ipq8074_firmware mdm9150_firmware mdm9206_firmware mdm9607_firmware mdm9615_firmware mdm9625_firmware mdm9635m_firmware mdm9640_firmware mdm9650_firmware mdm9655_firmware | Lack of check to prevent the buffer length taking negative values can lead to stack overflow. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer… |
CWE-787
Out-of-bounds Write |
CVE-2018-13924 | 2024-11-21 12:48 | 2019-07-22 | Show | GitHub Exploit DB Packet Storm |
| 246319 | 7.8 |
HIGH
Local |
qualcomm |
mdm9206_firmware mdm9607_firmware mdm9650_firmware mdm9655_firmware msm8996au_firmware qcs404_firmware qcs605_firmware qualcomm_215_firmware sd_410_firmware sd_412_firmware… |
XBL_SEC image authentication and other crypto related validations are accessible to a compromised OEM XBL Loader due to missing lock at XBL_SEC stage.. in Snapdragon Auto, Snapdragon Compute, Snapdra… |
CWE-284
Improper Access Control |
CVE-2018-13896 | 2024-11-21 12:48 | 2019-07-22 | Show | GitHub Exploit DB Packet Storm |
| 246320 | 6.1 |
MEDIUM
Network |
digisol | dg-hr-3300_firmware | Digisol Wireless Wifi Home Router HR-3300 allows XSS via the userid or password parameter to the admin login page. |
CWE-79
Cross-site Scripting |
CVE-2018-14027 | 2024-11-21 12:48 | 2019-07-6 | Show | GitHub Exploit DB Packet Storm |