|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 3, 2026, 6:08 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 257691 | 9.3 | 危険 | マイクロソフト | - | Microsoft Internet Explorer に脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-3672 | 2010-01-14 12:08 | 2009-11-25 | Show | GitHub Exploit DB Packet Storm |
| 257692 | 9.3 | 危険 | サン・マイクロシステムズ VMware |
- | Sun Java SE の java.lang パッケージにおける脆弱性 |
CWE-362
競合状態 |
CVE-2009-2724 | 2010-01-14 12:08 | 2009-08-10 | Show | GitHub Exploit DB Packet Storm |
| 257693 | 10 | 危険 | サン・マイクロシステムズ VMware |
- | Sun Java SE の Provider クラスにおける脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-2721 | 2010-01-14 12:08 | 2009-08-10 | Show | GitHub Exploit DB Packet Storm |
| 257694 | 5 | 警告 | 有限会社シースリー | - | WebCalenderC3 におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2010-0348 | 2010-01-12 15:01 | 2010-01-12 | Show | GitHub Exploit DB Packet Storm |
| 257695 | 4.3 | 警告 | 有限会社シースリー | - | WebCalenderC3 におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-0349 | 2010-01-12 15:00 | 2010-01-12 | Show | GitHub Exploit DB Packet Storm |
| 257696 | 10 | 危険 | サイバートラスト株式会社 XEmacs |
- | XEmacs の glyphs-eimage.c における整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2009-2688 | 2010-01-12 14:48 | 2009-08-5 | Show | GitHub Exploit DB Packet Storm |
| 257697 | 6.8 | 警告 | IBM | - | IBM WebSphere Application Server (WAS) におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2009-2746 | 2010-01-12 14:48 | 2009-11-13 | Show | GitHub Exploit DB Packet Storm |
| 257698 | 5 | 警告 | アップル | - | Apple Safari におけるローカル HTML ファイルを読まれる脆弱性 |
CWE-Other
その他 |
CVE-2009-2842 | 2010-01-7 12:09 | 2009-11-11 | Show | GitHub Exploit DB Packet Storm |
| 257699 | 5.5 | 警告 | シックス・アパート株式会社 | - | Movable Type におけるアクセス制限回避の脆弱性 |
CWE-264
認可・権限・アクセス制御 |
- | 2010-01-6 15:01 | 2010-01-6 | Show | GitHub Exploit DB Packet Storm |
| 257700 | 9.3 | 危険 | マイクロソフト | - | Microsoft Office Word および Open XML File Format Converter における、任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-3135 | 2010-01-6 14:44 | 2009-11-10 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 4, 2026, 4:17 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 247031 | 5.3 |
MEDIUM
Network |
qualcomm |
mdm9607_firmware mdm9650_firmware mdm9655_firmware msm8996au_firmware qcs605_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_410_firmware sd_12_firmware sd_6… |
Improper input validation might result in incorrect app id returned to the caller Instead of returning failure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Ele… |
CWE-20
Improper Input Validation |
CVE-2018-11935 | 2024-11-21 12:44 | 2019-02-26 | Show | GitHub Exploit DB Packet Storm |
| 247032 | 9.1 |
CRITICAL
Network |
qualcomm |
mdm9650_firmware mdm9655_firmware msm8996au_firmware qcs605_firmware sd_410_firmware sd_12_firmware sd_615_firmware sd_16_firmware sd_415_firmware sd_675_firmware sd_712… |
Improper input validation can lead RW access to secure subsystem from HLOS in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Co… |
CWE-20
Improper Input Validation |
CVE-2018-11932 | 2024-11-21 12:44 | 2019-02-26 | Show | GitHub Exploit DB Packet Storm |
| 247033 | 7.8 |
HIGH
Local |
qualcomm |
mdm9150_firmware mdm9206_firmware mdm9607_firmware mdm9650_firmware msm8996au_firmware qcs605_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_410_firmware sd… |
Improper access to HLOS is possible while transferring memory to CPZ in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer… |
CWE-20
Improper Input Validation |
CVE-2018-11931 | 2024-11-21 12:44 | 2019-02-26 | Show | GitHub Exploit DB Packet Storm |
| 247034 | 5.5 |
MEDIUM
Local |
qualcomm |
ipq8074_firmware mdm9150_firmware mdm9206_firmware mdm9607_firmware mdm9650_firmware mdm9655_firmware msm8996au_firmware qca8081_firmware qcs605_firmware sd_210_firmware | Bytes can be written to fuses from Secure region which can be read later by HLOS in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdra… |
CWE-20
Improper Input Validation |
CVE-2018-11864 | 2024-11-21 12:44 | 2019-02-26 | Show | GitHub Exploit DB Packet Storm |
| 247035 | 5.5 |
MEDIUM
Local |
qualcomm |
mdm9150_firmware mdm9206_firmware mdm9607_firmware mdm9650_firmware mdm9655_firmware msm8996au_firmware qcs605_firmware sd_210_firmware sd_212_firmware sd_205_firmware s… |
Usage of non-time-constant comparison functions can lead to information leakage through side channel analysis in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Elec… |
CWE-200
Information Exposure |
CVE-2018-11845 | 2024-11-21 12:44 | 2019-02-26 | Show | GitHub Exploit DB Packet Storm |
| 247036 | 5.5 |
MEDIUM
Local |
qualcomm |
ipq8074_firmware mdm9150_firmware mdm9206_firmware mdm9607_firmware mdm9640_firmware mdm9650_firmware mdm9655_firmware msm8996au_firmware qca8081_firmware qcs605_firmware | Use of non-time constant memcmp function creates side channel that leaks information and leads to cryptographic issues in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Cons… |
NVD-CWE-noinfo
|
CVE-2018-11820 | 2024-11-21 12:44 | 2019-02-26 | Show | GitHub Exploit DB Packet Storm |
| 247037 | 5.5 |
MEDIUM
Local |
intel | proset\/wireless | Buffer overflow in the command-line interface for Intel(R) PROSet Wireless v20.50 and before may allow an authenticated user to potentially enable denial of service via local access. |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2018-12159 | 2024-11-21 12:44 | 2019-02-19 | Show | GitHub Exploit DB Packet Storm |
| 247038 | 7.8 |
HIGH
Local |
android | In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, Null pointer dereference vulnerability may occur due to missing NULL assignment in NAT modul… |
CWE-476 CWE-416 NULL Pointer Dereference Use After Free |
CVE-2018-12014 | 2024-11-21 12:44 | 2019-02-12 | Show | GitHub Exploit DB Packet Storm | |
| 247039 | 5.5 |
MEDIUM
Local |
android | In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, Uninitialized data for socket address leads to information exposure. |
CWE-908
Use of Uninitialized Resource |
CVE-2018-12011 | 2024-11-21 12:44 | 2019-02-12 | Show | GitHub Exploit DB Packet Storm | |
| 247040 | 7.8 |
HIGH
Local |
android | In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, Absence of length sanity check may lead to possible stack overflow resulting in memory corru… |
CWE-787
Out-of-bounds Write |
CVE-2018-12010 | 2024-11-21 12:44 | 2019-02-12 | Show | GitHub Exploit DB Packet Storm |