You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Oct. 5, 2024, 10 a.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
196201 | 7.5 | 危険 | Mambo Foundation | - | Mambo CMS の administrator/index2.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-2917 | 2011-12-13 14:41 | 2011-12-8 | Show | GitHub Exploit DB Packet Storm |
196202 | 6.8 | 警告 | MIT Kerberos | - | MIT Kerberos の process_tgs_req 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2011-1530 | 2011-12-13 14:40 | 2011-12-6 | Show | GitHub Exploit DB Packet Storm |
196203 | 6.4 | 警告 | BlackBerry | - | BlackBerry Administration API におけるテキストファイルを読まれる脆弱性 |
CWE-noinfo
情報不足 |
CVE-2011-0287 | 2011-12-13 14:35 | 2011-07-12 | Show | GitHub Exploit DB Packet Storm |
196204 | 6.4 | 警告 | Widelands | - | Widelands におけるパストラバーサル攻撃を誘発される脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2011-4675 | 2011-12-12 18:21 | 2011-12-5 | Show | GitHub Exploit DB Packet Storm |
196205 | 5 | 警告 | One Click Orgs | - | One Click Orgs のパスワードリセット機能におけるユーザアカウントを列挙される脆弱性 |
CWE-255
証明書・パスワード管理 |
CVE-2011-4678 | 2011-12-12 18:19 | 2011-12-6 | Show | GitHub Exploit DB Packet Storm |
196206 | 4 | 警告 | One Click Orgs | - | One Click Orgs におけるサービス運用妨害 (ログイン障害) の脆弱性 |
CWE-255
証明書・パスワード管理 |
CVE-2011-4555 | 2011-12-12 18:18 | 2011-12-6 | Show | GitHub Exploit DB Packet Storm |
196207 | 5.5 | 警告 | One Click Orgs | - | One Click Orgs における巧妙に細工された SMTP トラフィックを誘発する脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2011-4554 | 2011-12-12 18:15 | 2011-12-6 | Show | GitHub Exploit DB Packet Storm |
196208 | 6.9 | 警告 | Celery | - | Celery における権限を取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-4356 | 2011-12-12 18:14 | 2011-12-5 | Show | GitHub Exploit DB Packet Storm |
196209 | 7.5 | 危険 | ヒューレット・パッカード | - | HP Protect Tools Device Access Manager における任意のコードを実行される脆弱性 |
CWE-119
バッファエラー |
CVE-2011-4162 | 2011-12-12 18:13 | 2011-12-1 | Show | GitHub Exploit DB Packet Storm |
196210 | 10 | 危険 | ヒューレット・パッカード | - | HP CM8060 Color MFP その他の製品のデフォルト設定における任意のコードを実行される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-4161 | 2011-12-12 18:10 | 2011-11-30 | Show | GitHub Exploit DB Packet Storm |
Update Date:Oct. 5, 2024, 5:52 a.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
971 | 4.8 |
MEDIUM
Network |
capensis | canopsis | This vulnerability could allow an attacker to store a malicious JavaScript payload in the broadcast message parameter within the admin panel. |
CWE-79
Cross-site Scripting |
CVE-2023-4564 | 2024-10-1 20:15 | 2023-10-4 | Show | GitHub Exploit DB Packet Storm |
972 | 4.8 |
MEDIUM
Network |
capensis | canopsis | This vulnerability could allow an attacker to store a malicious JavaScript payload in the login footer and login page description parameters within the administration panel. |
CWE-79
Cross-site Scripting |
CVE-2023-3196 | 2024-10-1 20:15 | 2023-10-4 | Show | GitHub Exploit DB Packet Storm |
973 | 4.4 |
MEDIUM
Local |
codesys | oscat_basic_library | Out-of-Bounds read vulnerability in OSCAT Basic Library allows an local, unprivileged attacker to access limited internal data of the PLC which may lead to a crash of the affected service. |
CWE-125
Out-of-bounds Read |
CVE-2024-6876 | 2024-10-1 16:15 | 2024-09-11 | Show | GitHub Exploit DB Packet Storm |
974 | 8.1 |
HIGH
Network |
phoenixcontact |
tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs2000_4g_vzw_vpn_firmware tc_mgua… |
A low privileged remote attacker can perform configuration changes of the firewall services, including packet filter, packet forwarding, network access control or NAT through the FW_INCOMING.FROM_IP … |
NVD-CWE-noinfo
|
CVE-2024-43393 | 2024-10-1 16:15 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
975 | 7.3 |
HIGH
Local |
beckhoff |
twincat\/bsd mdp_package |
The MPD package included in TwinCAT/BSD allows an authenticated, low-privileged local attacker to induce a Denial-of-Service (DoS) condition on the daemon and execute code in the context of user “roo… |
NVD-CWE-Other
|
CVE-2024-41176 | 2024-10-1 16:15 | 2024-08-27 | Show | GitHub Exploit DB Packet Storm |
976 | 8.1 |
HIGH
Network |
phoenixcontact |
tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs2000_4g_vzw_vpn_firmware tc_mgua… |
A low privileged remote attacker can perform configuration changes of the firewall services, including packet filter, packet forwarding, network access control or NAT through the FW_INCOMING.FROM_IP … |
NVD-CWE-noinfo
|
CVE-2024-43392 | 2024-10-1 16:15 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
977 | 8.1 |
HIGH
Network |
phoenixcontact |
tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs2000_4g_vzw_vpn_firmware tc_mgua… |
A low privileged remote attacker can perform configuration changes of the firewall services, including packet filter, packet forwarding, network access control or NAT through the FW_PORTFORWARDING.SR… |
NVD-CWE-noinfo
|
CVE-2024-43391 | 2024-10-1 16:15 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
978 | 8.1 |
HIGH
Network |
phoenixcontact |
tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs2000_4g_vzw_vpn_firmware tc_mgua… |
A low privileged remote attacker can perform configuration changes of the firewall services, including packet forwarding or NAT through the FW_NAT.IN_IP environment variable which can lead to a DoS. |
NVD-CWE-noinfo
|
CVE-2024-43390 | 2024-10-1 16:15 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
979 | 6.5 |
MEDIUM
Network |
phoenixcontact |
axc_f_1152_firmware axc_f_2152_firmware axc_f_3152_firmware bpc_9102s_firmware epc_1502_firmware epc_1522_firmware plcnext_engineer rfc_4072r_firmware rfc_4072s_firmware |
A download of code without integrity check vulnerability in PLCnext products allows an remote attacker with low privileges to compromise integrity on the affected engineering station and the connecte… |
CWE-494
Download of Code Without Integrity Check |
CVE-2023-46144 | 2024-10-1 16:15 | 2023-12-14 | Show | GitHub Exploit DB Packet Storm |
980 | 8.1 |
HIGH
Network |
phoenixcontact |
tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs2000_4g_vzw_vpn_firmware tc_mgua… |
A low privileged remote attacker can perform configuration changes of the ospf service through OSPF_INTERFACE.SIMPLE_KEY, OSPF_INTERFACE.DIGEST_KEY environment variables which can lead to a DoS. |
NVD-CWE-noinfo
|
CVE-2024-43389 | 2024-10-1 16:15 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |