|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 23, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 256591 | 7.2 | 危険 | IBM | - | IBM AIX および VIOS の qoslist におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2010-0961 | 2010-03-18 12:09 | 2010-03-5 | Show | GitHub Exploit DB Packet Storm |
| 256592 | 9 | 危険 | マイクロソフト | - | Microsoft Virtual PC の VMM におけるゲスト OS 内で任意のカーネルモードコードを実行される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-1542 | 2010-03-17 12:18 | 2009-07-14 | Show | GitHub Exploit DB Packet Storm |
| 256593 | 6.8 | 警告 | IBM | - | IBM Lotus Domino Web Access におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2010-0921 | 2010-03-16 11:15 | 2010-03-3 | Show | GitHub Exploit DB Packet Storm |
| 256594 | 4.3 | 警告 | IBM | - | IBM Lotus Domino Web Access におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-0920 | 2010-03-16 11:14 | 2010-03-3 | Show | GitHub Exploit DB Packet Storm |
| 256595 | 10 | 危険 | IBM | - | IBM Lotus Domino Web Access の UltraLite 機能における脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-0918 | 2010-03-16 11:14 | 2010-03-3 | Show | GitHub Exploit DB Packet Storm |
| 256596 | 4.9 | 警告 | サイバートラスト株式会社 レッドハット SystemTap |
- | SystemTap の _get_argv および _get_compat_argv 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-189
数値処理の問題 |
CVE-2010-0411 | 2010-03-16 11:14 | 2010-02-8 | Show | GitHub Exploit DB Packet Storm |
| 256597 | 10 | 危険 | サイバートラスト株式会社 レッドハット SystemTap |
- | SystemTap の stap-server における任意のコマンドを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-4273 | 2010-03-16 11:14 | 2010-01-26 | Show | GitHub Exploit DB Packet Storm |
| 256598 | 6.5 | 警告 | サイバートラスト株式会社 Linux レッドハット |
- | KVM の x86 エミュレータにおける権限昇格の脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2010-0298 | 2010-03-16 11:13 | 2010-02-9 | Show | GitHub Exploit DB Packet Storm |
| 256599 | 4.4 | 警告 | サイバートラスト株式会社 Fabrice Bellard レッドハット |
- | QEMU の usb_host_handle_control 関数におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2010-0297 | 2010-03-16 11:13 | 2010-02-9 | Show | GitHub Exploit DB Packet Storm |
| 256600 | 6.8 | 警告 | サン・マイクロシステムズ freedesktop.org |
- | Poppler における整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2009-3605 | 2010-03-15 16:40 | 2009-11-2 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 23, 2026, 4:08 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 256381 | 7.8 |
HIGH
Local |
spice-space debian |
spice-vdagent debian_linux |
spice-vdagent up to and including 0.17.0 does not properly escape save directory before passing to shell, allowing local attacker with access to the session the agent runs in to inject arbitrary comm… | - | CVE-2017-15108 | 2024-11-21 12:14 | 2018-01-20 | Show | GitHub Exploit DB Packet Storm |
| 256382 | 5.5 |
MEDIUM
Local |
linux redhat |
linux_kernel enterprise_linux enterprise_mrg |
A flaw was found in the hugetlb_mcopy_atomic_pte function in mm/hugetlb.c in the Linux kernel before 4.13.12. A lack of size check could cause a denial of service (BUG). |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2017-15128 | 2024-11-21 12:14 | 2018-01-14 | Show | GitHub Exploit DB Packet Storm |
| 256383 | 5.5 |
MEDIUM
Local |
linux redhat |
linux_kernel enterprise_linux enterprise_mrg |
A flaw was found in the hugetlb_mcopy_atomic_pte function in mm/hugetlb.c in the Linux kernel before 4.13. A superfluous implicit page unlock for VM_SHARED hugetlbfs mapping could trigger a local den… | - | CVE-2017-15127 | 2024-11-21 12:14 | 2018-01-14 | Show | GitHub Exploit DB Packet Storm |
| 256384 | 8.1 |
HIGH
Network |
linux | linux_kernel | A use-after-free flaw was found in fs/userfaultfd.c in the Linux kernel before 4.13.6. The issue is related to the handling of fork failure when dealing with event messages. Failure to fork correctly… | - | CVE-2017-15126 | 2024-11-21 12:14 | 2018-01-14 | Show | GitHub Exploit DB Packet Storm |
| 256385 | 7.2 |
HIGH
Network |
tp-link |
er5110g_firmware er5120g_firmware er5510g_firmware er5520g_firmware r4149g_firmware r4239g_firmware r4299g_firmware r473gp-ac_firmware r473g_firmware r473p-ac_firmware r… |
TP-Link WVR, WAR and ER devices allow remote authenticated administrators to execute arbitrary commands via command injection in the pptphellointerval variable in the pptp_server.lua file. |
NVD-CWE-noinfo
|
CVE-2017-15637 | 2024-11-21 12:14 | 2018-01-12 | Show | GitHub Exploit DB Packet Storm |
| 256386 | 7.2 |
HIGH
Network |
tp-link |
er5110g_firmware er5120g_firmware er5510g_firmware er5520g_firmware r4149g_firmware r4239g_firmware r4299g_firmware r473gp-ac_firmware r473g_firmware r473p-ac_firmware r… |
TP-Link WVR, WAR and ER devices allow remote authenticated administrators to execute arbitrary commands via command injection in the new-time variable in the webfilter.lua file. |
NVD-CWE-noinfo
|
CVE-2017-15636 | 2024-11-21 12:14 | 2018-01-12 | Show | GitHub Exploit DB Packet Storm |
| 256387 | 7.2 |
HIGH
Network |
tp-link |
er5110g_firmware er5120g_firmware er5510g_firmware er5520g_firmware r4149g_firmware r4239g_firmware r4299g_firmware r473gp-ac_firmware r473g_firmware r473p-ac_firmware r… |
TP-Link WVR, WAR and ER devices allow remote authenticated administrators to execute arbitrary commands via command injection in the max_conn variable in the session_limits.lua file. |
NVD-CWE-noinfo
|
CVE-2017-15635 | 2024-11-21 12:14 | 2018-01-12 | Show | GitHub Exploit DB Packet Storm |
| 256388 | 7.2 |
HIGH
Network |
tp-link |
er5110g_firmware er5120g_firmware er5510g_firmware er5520g_firmware r4149g_firmware r4239g_firmware r4299g_firmware r473gp-ac_firmware r473g_firmware r473p-ac_firmware r… |
TP-Link WVR, WAR and ER devices allow remote authenticated administrators to execute arbitrary commands via command injection in the name variable in the wportal.lua file. |
NVD-CWE-noinfo
|
CVE-2017-15634 | 2024-11-21 12:14 | 2018-01-12 | Show | GitHub Exploit DB Packet Storm |
| 256389 | 7.2 |
HIGH
Network |
tp-link |
er5110g_firmware er5120g_firmware er5510g_firmware er5520g_firmware r4149g_firmware r4239g_firmware r4299g_firmware r473gp-ac_firmware r473g_firmware r473p-ac_firmware r… |
TP-Link WVR, WAR and ER devices allow remote authenticated administrators to execute arbitrary commands via command injection in the new-ipgroup variable in the session_limits.lua file. |
NVD-CWE-noinfo
|
CVE-2017-15633 | 2024-11-21 12:14 | 2018-01-12 | Show | GitHub Exploit DB Packet Storm |
| 256390 | 7.2 |
HIGH
Network |
tp-link |
er5110g_firmware er5120g_firmware er5510g_firmware er5520g_firmware r4149g_firmware r4239g_firmware r4299g_firmware r473gp-ac_firmware r473g_firmware r473p-ac_firmware r… |
TP-Link WVR, WAR and ER devices allow remote authenticated administrators to execute arbitrary commands via command injection in the new-mppeencryption variable in the pptp_server.lua file. |
NVD-CWE-noinfo
|
CVE-2017-15632 | 2024-11-21 12:14 | 2018-01-12 | Show | GitHub Exploit DB Packet Storm |