|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 27, 2026, 10 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 260871 | 9.3 | 危険 | マイクロソフト | - | Microsoft Project における任意のコードを実行される脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2009-0102 | 2010-01-22 10:26 | 2009-12-8 | Show | GitHub Exploit DB Packet Storm |
| 260872 | 9.3 | 危険 | マイクロソフト | - | Microsoft Internet Explorer におけるメモリ破損の脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-3673 | 2010-01-22 10:26 | 2009-12-8 | Show | GitHub Exploit DB Packet Storm |
| 260873 | 9.3 | 危険 | マイクロソフト | - | Microsoft Internet Explorer におけるメモリ破損の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2009-3671 | 2010-01-22 10:26 | 2009-12-8 | Show | GitHub Exploit DB Packet Storm |
| 260874 | 10 | 危険 | マイクロソフト | - | Microsoft Windows のインターネット認証サービスにおけるネットワークリソースにアクセスされる脆弱性 |
CWE-255 CWE-94 |
CVE-2009-3677 | 2010-01-22 10:24 | 2009-12-8 | Show | GitHub Exploit DB Packet Storm |
| 260875 | 10 | 危険 | マイクロソフト | - | Microsoft Windows のインターネット認証サービスにおける任意のコードを実行される脆弱性 |
CWE-287
不適切な認証 |
CVE-2009-2505 | 2010-01-22 10:24 | 2009-12-8 | Show | GitHub Exploit DB Packet Storm |
| 260876 | 6.9 | 警告 | acpid | - | acpid の umask におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-4235 | 2010-01-21 11:44 | 2009-12-7 | Show | GitHub Exploit DB Packet Storm |
| 260877 | 6.9 | 警告 | サイバートラスト株式会社 レッドハット acpid |
- | acpid のレッドハットパッチにおける権限を取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-4033 | 2010-01-21 11:43 | 2009-12-7 | Show | GitHub Exploit DB Packet Storm |
| 260878 | 10 | 危険 | アドビシステムズ | - | Adobe Illustrator における任意のコードを実行される脆弱性 |
CWE-119
バッファエラー |
CVE-2009-3952 | 2010-01-21 11:43 | 2010-01-7 | Show | GitHub Exploit DB Packet Storm |
| 260879 | 9.3 | 危険 | アドビシステムズ | - | Adobe Illustrator における Encapsulated PostScript ファイルの処理に関する任意のコードを実行される脆弱性 |
CWE-119
バッファエラー |
CVE-2009-4195 | 2010-01-21 11:43 | 2009-12-4 | Show | GitHub Exploit DB Packet Storm |
| 260880 | 4.4 | 警告 | サイバートラスト株式会社 Linux レッドハット |
- | Linux Kernel の exit_notify 関数における任意のシグナルをプロセスに送信可能な脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-1337 | 2010-01-21 11:23 | 2009-04-22 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 27, 2026, 4:35 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 247311 | 9.8 |
CRITICAL
Network |
fasterxml debian oracle redhat |
jackson-databind debian_linux primavera_unifier primavera_p6_enterprise_project_portfolio_management webcenter_portal business_process_management_suite retail_workforce_management_s… |
FasterXML jackson-databind 2.x before 2.9.8 might allow attackers to have unspecified impact by leveraging failure to block the jboss-common-core class from polymorphic deserialization. |
CWE-502
Deserialization of Untrusted Data |
CVE-2018-19362 | 2024-11-21 12:57 | 2019-01-3 | Show | GitHub Exploit DB Packet Storm |
| 247312 | 9.8 |
CRITICAL
Network |
fasterxml debian oracle redhat |
jackson-databind debian_linux primavera_unifier primavera_p6_enterprise_project_portfolio_management webcenter_portal business_process_management_suite retail_workforce_management_s… |
FasterXML jackson-databind 2.x before 2.9.8 might allow attackers to have unspecified impact by leveraging failure to block the openjpa class from polymorphic deserialization. |
CWE-502
Deserialization of Untrusted Data |
CVE-2018-19361 | 2024-11-21 12:57 | 2019-01-3 | Show | GitHub Exploit DB Packet Storm |
| 247313 | 9.8 |
CRITICAL
Network |
fasterxml debian oracle redhat |
jackson-databind debian_linux primavera_unifier primavera_p6_enterprise_project_portfolio_management webcenter_portal business_process_management_suite retail_workforce_management_s… |
FasterXML jackson-databind 2.x before 2.9.8 might allow attackers to have unspecified impact by leveraging failure to block the axis2-transport-jms class from polymorphic deserialization. |
CWE-502
Deserialization of Untrusted Data |
CVE-2018-19360 | 2024-11-21 12:57 | 2019-01-3 | Show | GitHub Exploit DB Packet Storm |
| 247314 | 8.8 |
HIGH
Network |
engelsystem | engelsystem | Engelsystem before commit hash 2e28336 allows CSRF. |
CWE-352
Origin Validation Error |
CVE-2018-19182 | 2024-11-21 12:57 | 2018-12-27 | Show | GitHub Exploit DB Packet Storm |
| 247315 | 9.1 |
CRITICAL
Network |
epson | epson_workforce_wf-2861_firmware | The web service on Epson WorkForce WF-2861 10.48 LQ22I3(Recovery-mode), WF-2861 10.51.LQ20I6, and WF-2861 10.52.LQ17IA devices allows remote attackers to upload a firmware file and reset the printer … |
CWE-306
Missing Authentication for Critical Function |
CVE-2018-19248 | 2024-11-21 12:57 | 2018-12-25 | Show | GitHub Exploit DB Packet Storm |
| 247316 | 7.5 |
HIGH
Network |
epson | epson_workforce_wf-2861_firmware | The web service on Epson WorkForce WF-2861 10.48 LQ22I3(Recovery-mode), WF-2861 10.51.LQ20I6, and WF-2861 10.52.LQ17IA devices allows remote attackers to cause a denial of service via a FIRMWAREUPDAT… |
NVD-CWE-noinfo
|
CVE-2018-19232 | 2024-11-21 12:57 | 2018-12-25 | Show | GitHub Exploit DB Packet Storm |
| 247317 | 7.8 |
HIGH
Local |
xmplay | xmplay | XMPlay 3.8.3 allows remote attackers to execute arbitrary code or cause a denial of service (stack-based buffer overflow) via a crafted http:// URL in a .m3u file. |
CWE-787
Out-of-bounds Write |
CVE-2018-19357 | 2024-11-21 12:57 | 2018-12-24 | Show | GitHub Exploit DB Packet Storm |
| 247318 | 9.8 |
CRITICAL
Network |
gigabyte |
oc_guru_ii gigabyte_app_center aorus_graphics_engine xtreme_gaming_engine |
The GDrv low-level driver in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE before 1.57, XTREME GAMING ENGINE before 1.26, and OC GURU II v2.08 exposes functionality to read and writ… |
NVD-CWE-noinfo
|
CVE-2018-19323 | 2024-11-21 12:57 | 2018-12-22 | Show | GitHub Exploit DB Packet Storm |
| 247319 | 7.8 |
HIGH
Local |
gigabyte |
oc_guru_ii app_center aorus_graphics_engine xtreme_gaming_engine |
The GPCIDrv and GDrv low-level drivers in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE before 1.57, XTREME GAMING ENGINE before 1.26, and OC GURU II v2.08 expose functionality to r… |
CWE-749
Exposed Dangerous Method or Function |
CVE-2018-19322 | 2024-11-21 12:57 | 2018-12-22 | Show | GitHub Exploit DB Packet Storm |
| 247320 | 7.8 |
HIGH
Local |
gigabyte |
oc_guru_ii aorus_graphics_engine app_center xtreme_gaming_engine |
The GPCIDrv and GDrv low-level drivers in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE before 1.57, XTREME GAMING ENGINE before 1.26, and OC GURU II v2.08 expose functionality to r… |
NVD-CWE-noinfo
|
CVE-2018-19321 | 2024-11-21 12:57 | 2018-12-22 | Show | GitHub Exploit DB Packet Storm |