|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 8, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 258011 | 5 | 警告 | サン・マイクロシステムズ | - | Sun ONE/iPlanet Web Server におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-noinfo
情報不足 |
CVE-2003-1590 | 2010-03-15 16:39 | 2003-08-13 | Show | GitHub Exploit DB Packet Storm |
| 258012 | 7.1 | 危険 | サイバートラスト株式会社 Linux レッドハット |
- | Linux kernel の handle_dr 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-3722 | 2010-03-15 15:23 | 2009-10-30 | Show | GitHub Exploit DB Packet Storm |
| 258013 | 4.3 | 警告 | シュナイダーエレクトリック株式会社 (旧社名株式会社エーピーシー・ジャパン) | - | APC Switched Rack PDU におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4406 | 2010-03-12 15:13 | 2009-12-23 | Show | GitHub Exploit DB Packet Storm |
| 258014 | 4.3 | 警告 | シュナイダーエレクトリック株式会社 (旧社名株式会社エーピーシー・ジャパン) | - | APC Network Management Card におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-1798 | 2010-03-12 15:13 | 2009-12-28 | Show | GitHub Exploit DB Packet Storm |
| 258015 | 6.8 | 警告 | シュナイダーエレクトリック株式会社 (旧社名株式会社エーピーシー・ジャパン) | - | APC Network Management Card におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2009-1797 | 2010-03-12 15:12 | 2009-12-28 | Show | GitHub Exploit DB Packet Storm |
| 258016 | 6.6 | 警告 | 日立 | - | JP1/Cm2/Network Node Manager のリモートコンソールにおけるファイルパーミッションの脆弱性 |
CWE-264
認可・権限・アクセス制御 |
- | 2010-03-12 15:12 | 2010-02-26 | Show | GitHub Exploit DB Packet Storm |
| 258017 | 9.3 | 危険 | Panda Security | - | Panda Security ActiveScan におけるコンポーネントのデジタル署名を検証しない問題 |
CWE-94
コード・インジェクション |
CVE-2009-3735 | 2010-03-12 15:12 | 2010-02-12 | Show | GitHub Exploit DB Packet Storm |
| 258018 | 5 | 警告 | サイバートラスト株式会社 OpenSSL Project IBM レッドハット |
- | OpenSSL の dtls1_retrieve_buffered_fragment 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2009-1379 | 2010-03-12 14:44 | 2009-05-19 | Show | GitHub Exploit DB Packet Storm |
| 258019 | 5 | 警告 | サイバートラスト株式会社 OpenSSL Project IBM レッドハット |
- | OpenSSL の dtls1_process_out_of_seq_message 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2009-1378 | 2010-03-12 14:44 | 2009-05-19 | Show | GitHub Exploit DB Packet Storm |
| 258020 | 5 | 警告 | サイバートラスト株式会社 OpenSSL Project IBM レッドハット |
- | OpenSSL の dtls1_buffer_record 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-119
バッファエラー |
CVE-2009-1377 | 2010-03-12 14:43 | 2009-05-19 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 9, 2026, 4:16 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 247691 | 9.8 |
CRITICAL
Network |
sv3c | h.264_poe_ip_camera_firmware | SV3C L-SERIES HD CAMERA V2.3.4.2103-S50-NTD-B20170508B devices improperly identifies users only by the authentication level sent in the cookies, which allow remote attackers to bypass authentication … |
CWE-287
Improper Authentication |
CVE-2018-12666 | 2024-11-21 12:45 | 2018-10-20 | Show | GitHub Exploit DB Packet Storm |
| 247692 | 5.3 |
MEDIUM
Network |
mozilla | firefox | The displayed addressbar URL can be spoofed on Firefox for Android using a javascript: URI in concert with JavaScript to insert text before the loaded domain name, scrolling the loaded domain out of … |
CWE-20
Improper Input Validation |
CVE-2018-12382 | 2024-11-21 12:45 | 2018-10-18 | Show | GitHub Exploit DB Packet Storm |
| 247693 | 5.3 |
MEDIUM
Network |
mozilla |
firefox firefox_esr |
Manually dragging and dropping an Outlook email message into the browser will trigger a page navigation when the message's mail columns are incorrectly interpreted as a URL. *Note: this issue only af… |
CWE-610
Externally Controlled Reference to a Resource in Another Sphere |
CVE-2018-12381 | 2024-11-21 12:45 | 2018-10-18 | Show | GitHub Exploit DB Packet Storm |
| 247694 | 8.8 |
HIGH
Network |
mozilla canonical |
firefox ubuntu_linux |
Memory safety bugs present in Firefox 61. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. T… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2018-12375 | 2024-11-21 12:45 | 2018-10-18 | Show | GitHub Exploit DB Packet Storm |
| 247695 | 4.3 |
MEDIUM
Network |
mozilla redhat debian canonical |
thunderbird enterprise_linux_desktop enterprise_linux_workstation enterprise_linux enterprise_linux_server debian_linux ubuntu_linux |
Plaintext of decrypted emails can leak through by user submitting an embedded form by pressing enter key within a text input field. This vulnerability affects Thunderbird < 52.9. |
CWE-200
Information Exposure |
CVE-2018-12374 | 2024-11-21 12:45 | 2018-10-18 | Show | GitHub Exploit DB Packet Storm |
| 247696 | 9.1 |
CRITICAL
Network |
redhat debian canonical mozilla |
enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_eus enterprise_linux_server_tus enterprise_linux_server_aus debian_linux ubu… |
A vulnerability where the JavaScript JIT compiler inlines Array.prototype.push with multiple arguments that results in the stack pointer being off by 8 bytes after a bailout. This leaks a memory addr… |
CWE-20
Improper Input Validation |
CVE-2018-12387 | 2024-11-21 12:45 | 2018-10-18 | Show | GitHub Exploit DB Packet Storm |
| 247697 | 8.1 |
HIGH
Network |
redhat debian canonical mozilla |
enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_eus enterprise_linux_server_tus enterprise_linux_server_aus debian_linux ubu… |
A vulnerability in register allocation in JavaScript can lead to type confusion, allowing for an arbitrary read and write. This leads to remote code execution inside the sandboxed content process whe… |
CWE-704
Incorrect Type Conversion or Cast |
CVE-2018-12386 | 2024-11-21 12:45 | 2018-10-18 | Show | GitHub Exploit DB Packet Storm |
| 247698 | 7.0 |
HIGH
Local |
redhat debian canonical mozilla |
enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_eus enterprise_linux_server_tus enterprise_linux_server_aus debian_linux ubu… |
A potentially exploitable crash in TransportSecurityInfo used for SSL can be triggered by data stored in the local cache in the user profile directory. This issue is only exploitable in combination w… |
CWE-20
Improper Input Validation |
CVE-2018-12385 | 2024-11-21 12:45 | 2018-10-18 | Show | GitHub Exploit DB Packet Storm |
| 247699 | 5.5 |
MEDIUM
Local |
redhat debian canonical mozilla |
enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_eus enterprise_linux_server_tus enterprise_linux_server_aus debian_linux ubu… |
If a user saved passwords before Firefox 58 and then later set a master password, an unencrypted copy of these passwords is still accessible. This is because the older stored password file was not de… |
CWE-522
Insufficiently Protected Credentials |
CVE-2018-12383 | 2024-11-21 12:45 | 2018-10-18 | Show | GitHub Exploit DB Packet Storm |
| 247700 | 6.5 |
MEDIUM
Network |
mozilla redhat debian canonical |
thunderbird enterprise_linux_desktop enterprise_linux_workstation enterprise_linux enterprise_linux_server debian_linux ubuntu_linux |
dDecrypted S/MIME parts hidden with CSS or the plaintext HTML tag can leak plaintext when included in a HTML reply/forward. This vulnerability affects Thunderbird < 52.9. |
CWE-200
Information Exposure |
CVE-2018-12373 | 2024-11-21 12:45 | 2018-10-18 | Show | GitHub Exploit DB Packet Storm |