You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Sept. 29, 2024, 6 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
195681 | 7.5 | 危険 | Jextensions | - | Joomla! 用 HM Community コンポーネントにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-4808 | 2011-12-16 10:41 | 2011-12-14 | Show | GitHub Exploit DB Packet Storm |
195682 | 5 | 警告 | foobla | - | Joomla! 用の obSuggest コンポーネントにおけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2011-4804 | 2011-12-16 10:19 | 2011-12-14 | Show | GitHub Exploit DB Packet Storm |
195683 | 7.5 | 危険 | BraveNewCode | - | WordPress 用の WPTouch プラグインにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-4803 | 2011-12-16 10:18 | 2011-12-14 | Show | GitHub Exploit DB Packet Storm |
195684 | 6.8 | 警告 | DELL EMC (旧 EMC Corporation) | - | EMC RSA AAOP におけるアプリケーション制限を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-2742 | 2011-12-15 16:59 | 2011-12-14 | Show | GitHub Exploit DB Packet Storm |
195685 | 6.8 | 警告 | DELL EMC (旧 EMC Corporation) | - | EMC RSA AAOP におけるセキュリティ制限を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-2741 | 2011-12-15 16:58 | 2011-12-14 | Show | GitHub Exploit DB Packet Storm |
195686 | 4.3 | 警告 | アドビシステムズ | - | Adobe ColdFusion の RDS におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-4368 | 2011-12-15 16:57 | 2011-12-13 | Show | GitHub Exploit DB Packet Storm |
195687 | 4.3 | 警告 | アドビシステムズ | - | Adobe ColdFusion におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-2463 | 2011-12-15 16:57 | 2011-12-13 | Show | GitHub Exploit DB Packet Storm |
195688 | 4.3 | 警告 | アップル | - | iOS 上の Safari におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-noinfo
情報不足 |
- | 2011-12-15 12:02 | 2011-12-15 | Show | GitHub Exploit DB Packet Storm |
195689 | 7.2 | 危険 | TADASoft | - | Tadasoft Restorepoint の評価版における権限を取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-4202 | 2011-12-14 15:50 | 2011-12-13 | Show | GitHub Exploit DB Packet Storm |
195690 | 9.3 | 危険 | TADASoft | - | Tadasoft Restorepoint の評価版における任意のコマンドを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2011-4201 | 2011-12-14 15:50 | 2011-12-13 | Show | GitHub Exploit DB Packet Storm |
Update Date:Sept. 30, 2024, 5:13 a.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
121 | 8.1 |
HIGH
Network |
zoom |
meeting_software_development_kit rooms zoom |
Exposure of sensitive information in Zoom Client SDK's before 5.15.5 may allow an authenticated user to enable a denial of service via network access. Update |
CWE-668
Exposure of Resource to Wrong Sphere |
CVE-2023-39214 | 2024-09-28 05:15 | 2023-08-9 | Show | GitHub Exploit DB Packet Storm |
122 | 9.8 |
CRITICAL
Network
zoom
|
virtual_desktop_infrastructure |
zoom
Improper neutralization of special elements in Zoom Desktop Client for Windows and Zoom VDI Client before 5.15.2 may allow an unauthenticated user to enable an escalation of privilege via network acc…
Update
|
CWE-74
|
Injection
CVE-2023-39213
|
2024-09-28 05:15 |
2023-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
123 | 7.5 |
HIGH
Network
zoom
|
meeting_software_development_kit |
video_software_development_kit
Improper input validation in Zoom SDK’s before 5.14.10 may allow an unauthenticated user to enable a denial of service via network access.
Update
|
NVD-CWE-noinfo
|
CVE-2023-39217
|
2024-09-28 05:15 |
2023-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
124 | 9.8 |
CRITICAL
Network
zoom
|
zoom
|
Improper input validation in Zoom Desktop Client for Windows before 5.14.7 may allow an unauthenticated user to enable an escalation of privilege via network access.
Update
|
NVD-CWE-noinfo
|
CVE-2023-39216
|
2024-09-28 05:15 |
2023-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
125 | 5.7 |
MEDIUM
Network |
phoenixcontact |
tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs2000_4g_vzw_vpn_firmware tc_mgua… |
A low privileged remote attacker can get access to CSRF tokens of higher privileged users which can be abused to mount CSRF attacks. Update |
CWE-212
Improper Removal of Sensitive Information Before Storage or Transfer |
CVE-2024-7698 | 2024-09-28 04:39 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
126 | 8.1 |
HIGH
Network |
phoenixcontact |
tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs2000_4g_vzw_vpn_firmware tc_mgua… |
A low privileged remote attacker can perform configuration changes of the firewall services, including packet filter, packet forwarding, network access control or NAT through the FW_PORTFORWARDING.SR… Update |
NVD-CWE-noinfo
|
CVE-2024-43391 | 2024-09-28 04:38 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
127 | 8.1 |
HIGH
Network |
phoenixcontact |
tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs2000_4g_vzw_vpn_firmware tc_mgua… |
A low privileged remote attacker can perform configuration changes of the firewall services, including packet forwarding or NAT through the FW_NAT.IN_IP environment variable which can lead to a DoS. Update |
NVD-CWE-noinfo
|
CVE-2024-43390 | 2024-09-28 04:37 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
128 | 8.1 |
HIGH
Network |
phoenixcontact |
tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs2000_4g_vzw_vpn_firmware tc_mgua… |
A low privileged remote attacker can perform configuration changes of the firewall services, including packet filter, packet forwarding, network access control or NAT through the FW_INCOMING.FROM_IP … Update |
NVD-CWE-noinfo
|
CVE-2024-43393 | 2024-09-28 04:36 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
129 | 8.1 |
HIGH
Network |
phoenixcontact |
tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs2000_4g_vzw_vpn_firmware tc_mgua… |
A low privileged remote attacker can perform configuration changes of the ospf service through OSPF_INTERFACE.SIMPLE_KEY, OSPF_INTERFACE.DIGEST_KEY environment variables which can lead to a DoS. Update |
NVD-CWE-noinfo
|
CVE-2024-43389 | 2024-09-28 04:36 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
130 | - | - | - | Directory Traversal vulnerability in Plasmoapp RPShare Fabric mod v.1.0.0 allows a remote attacker to execute arbitrary code via the getFileNameFromConnection method in DownloadTask New | - | CVE-2024-33369 | 2024-09-28 04:35 | 2024-09-28 | Show | GitHub Exploit DB Packet Storm |