|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 13, 2026, 10 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 258371 | 9.3 | 危険 | マイクロソフト | - | Microsoft Windows Help and Support Center に脆弱性 |
CWE-78
OSコマンド・インジェクション |
CVE-2010-1885 | 2010-07-23 18:55 | 2010-06-10 | Show | GitHub Exploit DB Packet Storm |
| 258372 | 4.9 | 警告 | マイクロソフト | - | Microsoft Windows の Canonical Display Driver における任意のコードを実行される脆弱性 |
CWE-DesignError
|
CVE-2009-3678 | 2010-07-23 18:55 | 2010-05-14 | Show | GitHub Exploit DB Packet Storm |
| 258373 | 9.3 | 危険 | サン・マイクロシステムズ レッドハット リアルネットワークス |
- | Realnetworks RealPlayer における ASM RuleBook の処理に関する脆弱性 |
CWE-119
バッファエラー |
CVE-2009-4247 | 2010-07-23 18:55 | 2010-01-19 | Show | GitHub Exploit DB Packet Storm |
| 258374 | 10 | 危険 | サイバートラスト株式会社 Apache Software Foundation |
- | Apache Geronimo の LoginModule 実装における認証要求を回避される脆弱性 |
CWE-287
不適切な認証 |
CVE-2007-4548 | 2010-07-22 20:51 | 2007-08-13 | Show | GitHub Exploit DB Packet Storm |
| 258375 | 5 | 警告 | サイバートラスト株式会社 Apache Software Foundation |
- | Apache Geronimo の management EJB における認証を回避される脆弱性 |
CWE-287
不適切な認証 |
CVE-2007-5085 | 2010-07-22 20:51 | 2007-09-6 | Show | GitHub Exploit DB Packet Storm |
| 258376 | 7.5 | 危険 | サイバートラスト株式会社 Apache Software Foundation |
- | Apache Geronimo の SQLLoginModule における認証を回避される脆弱性 |
CWE-287
不適切な認証 |
CVE-2007-5797 | 2010-07-22 20:51 | 2007-10-22 | Show | GitHub Exploit DB Packet Storm |
| 258377 | 6.8 | 警告 | InterSect Alliance International Pty | - | Snare Agent の Web インターフェースにクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2010-2594 | 2010-07-22 20:51 | 2010-06-30 | Show | GitHub Exploit DB Packet Storm |
| 258378 | 5.5 | 警告 | 富士通 | - | Internet Navigware Server における情報漏えいの脆弱性 |
CWE-200
情報漏えい |
- | 2010-07-22 20:51 | 2010-06-18 | Show | GitHub Exploit DB Packet Storm |
| 258379 | 7.8 | 危険 | サイバートラスト株式会社 Linux レッドハット |
- | Linux kernel の NFSv4 クライアントの nfs4_proc_lock 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2009-3726 | 2010-07-22 17:53 | 2009-11-9 | Show | GitHub Exploit DB Packet Storm |
| 258380 | 5 | 警告 | IBM アップル サイバートラスト株式会社 サン・マイクロシステムズ ヒューレット・パッカード マイクロソフト オラクル OpenOffice.org Project レッドハット |
- | XML 署名の検証において認証回避が可能な問題 |
CWE-DesignError
|
CVE-2009-0217 | 2010-07-22 17:52 | 2009-07-15 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 13, 2026, 4:20 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 256331 | 9.8 |
CRITICAL
Network |
debian redhat mozilla |
debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus firefox thu… |
A use-after-free vulnerability occurs during certain text input selection resulting in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.1, Firefox ESR < 45.9, Firefox ESR … |
CWE-416
Use After Free |
CVE-2017-5432 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 256332 | 9.8 |
CRITICAL
Network |
redhat mozilla |
enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server firefox_esr thunderbird firefox |
Memory safety bugs were reported in Firefox 52, Firefox ESR 52, and Thunderbird 52. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these c… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2017-5430 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 256333 | 9.8 |
CRITICAL
Network |
debian redhat mozilla |
debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus firefox thu… |
A use-after-free vulnerability occurs during transaction processing in the editor during design mode interactions. This results in a potentially exploitable crash. This vulnerability affects Thunderb… |
CWE-416
Use After Free |
CVE-2017-5435 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 256334 | 9.8 |
CRITICAL
Network |
debian redhat mozilla |
debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus thunderbird | A use-after-free vulnerability in SMIL animation functions occurs when pointers to animation elements in an array are dropped from the animation controller while still in use. This results in a poten… |
CWE-416
Use After Free |
CVE-2017-5433 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 256335 | 9.8 |
CRITICAL
Network |
redhat debian mozilla |
enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server debian_linux thunderbird firefox firefox_esr |
Memory safety bugs were reported in Firefox 52, Firefox ESR 45.8, Firefox ESR 52, and Thunderbird 52. Some of these bugs showed evidence of memory corruption and we presume that with enough effort th… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2017-5429 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 256336 | 9.8 |
CRITICAL
Network |
redhat mozilla |
enterprise_linux_desktop enterprise_linux_workstation enterprise_linux enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus firefox firefox_esr |
An integer overflow in "createImageBitmap()" was reported through the Pwn2Own contest. The fix for this vulnerability disables the experimental extensions to the "createImageBitmap" API. This functio… |
CWE-190
Integer Overflow or Wraparound |
CVE-2017-5428 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 256337 | 5.5 |
MEDIUM
Local |
mozilla | firefox | A non-existent chrome.manifest file will attempt to be loaded during startup from the primary installation directory. If a malicious user with local access puts chrome.manifest and other referenced f… |
CWE-362
Race Condition |
CVE-2017-5427 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 256338 | 5.3 |
MEDIUM
Network |
mozilla |
firefox thunderbird |
On Linux, if the secure computing mode BPF (seccomp-bpf) filter is running when the Gecko Media Plugin sandbox is started, the sandbox fails to be applied and items that would run within the sandbox … |
CWE-732
Incorrect Permission Assignment for Critical Resource |
CVE-2017-5426 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 256339 | 7.5 |
HIGH
Network |
mozilla |
firefox thunderbird |
The Gecko Media Plugin sandbox allows access to local files that match specific regular expressions. On OS OX, this matching allows access to some data in subdirectories of "/private/var" that could … |
CWE-200
Information Exposure |
CVE-2017-5425 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 256340 | 7.5 |
HIGH
Network |
mozilla |
thunderbird firefox |
If a malicious site uses the "view-source:" protocol in a series within a single hyperlink, it can trigger a non-exploitable browser crash when the hyperlink is selected. This was fixed by no longer … |
CWE-20
Improper Input Validation |
CVE-2017-5422 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |