![]() |
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":Feb. 3, 2025, 1:14 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
196291 | 3.3 | 注意 | becauseinter | - | Bournal における任意のファイルを上書きされる脆弱性 |
CWE-59
リンク解釈の問題 |
CVE-2010-0118 | 2012-06-26 16:19 | 2010-02-24 | Show | GitHub Exploit DB Packet Storm |
196292 | 9.3 | 危険 | energizer | - | Energizer DUO USB の UsbCharger.dll におけるプログラムを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2010-0103 | 2012-06-26 16:19 | 2010-03-10 | Show | GitHub Exploit DB Packet Storm |
196293 | 7.5 | 危険 | GNU Project | - | GNU C Library の nis/nss_nis/nis-pwd.c における NIS アカウントの暗号化されたパスワードを取得される脆弱性 |
CWE-255
証明書・パスワード管理 |
CVE-2010-0015 | 2012-06-26 16:19 | 2010-01-14 | Show | GitHub Exploit DB Packet Storm |
196294 | 3.7 | 注意 | Fedora Project | - | SSSD における制限されたアクセスを回避される脆弱性 |
CWE-287
不適切な認証 |
CVE-2010-0014 | 2012-06-26 16:19 | 2010-01-14 | Show | GitHub Exploit DB Packet Storm |
196295 | 4.3 | 警告 | Apache Software Foundation | - | Apache CouchDB における重要情報を取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2010-0009 | 2012-06-26 16:19 | 2010-04-5 | Show | GitHub Exploit DB Packet Storm |
196296 | 2.1 | 注意 | GNU Project | - | Bash の /etc/profile.d/60alias.sh スクリプトにおける存在するファイルを非表示にされる脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2010-0002 | 2012-06-26 16:19 | 2010-01-14 | Show | GitHub Exploit DB Packet Storm |
196297 | 4.3 | 警告 | aj square | - | AJ Auction Pro OOPD の index.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4989 | 2012-06-26 16:19 | 2010-08-25 | Show | GitHub Exploit DB Packet Storm |
196298 | 7.5 | 危険 | TYPO3 Association christian ehmann |
- | TYPO3 の event_registr 拡張における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4968 | 2012-06-26 16:19 | 2010-07-28 | Show | GitHub Exploit DB Packet Storm |
196299 | 7.5 | 危険 | elemente TYPO3 Association |
- | TYPO3 の ast_addresszipsearch 拡張における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4966 | 2012-06-26 16:19 | 2010-07-28 | Show | GitHub Exploit DB Packet Storm |
196300 | 9.3 | 危険 | adammo | - | Fat Player におけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-4962 | 2012-06-26 16:19 | 2010-07-28 | Show | GitHub Exploit DB Packet Storm |
Update Date:Feb. 21, 2025, 4:08 a.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
268961 | - | secure_elements | class_5_enterprise_vulnerability_management | Upgrade to version 2.8.1 |
NVD-CWE-Other
|
CVE-2006-2708 | 2017-07-20 10:31 | 2006-06-1 | Show | GitHub Exploit DB Packet Storm | |
268962 | - | secure_elements | class_5_enterprise_vulnerability_management | Secure Elements Class 5 AVR (aka C5 EVM) before 2.8.1 do not validate the source address of a message, which allows remote attackers to (1) execute arbitrary code on a client or (2) forge messages to… |
NVD-CWE-Other
|
CVE-2006-2709 | 2017-07-20 10:31 | 2006-06-1 | Show | GitHub Exploit DB Packet Storm | |
268963 | - | secure_elements | class_5_enterprise_vulnerability_management | Upgrade to version 2.8.1 |
NVD-CWE-Other
|
CVE-2006-2709 | 2017-07-20 10:31 | 2006-06-1 | Show | GitHub Exploit DB Packet Storm | |
268964 | - | secure_elements | class_5_enterprise_vulnerability_management | Secure Elements Class 5 AVR (aka C5 EVM) before 2.8.1 uses the same invariant RSA key for all installations, which allows remote attackers with the key to decrypt communications. |
NVD-CWE-Other
|
CVE-2006-2710 | 2017-07-20 10:31 | 2006-06-1 | Show | GitHub Exploit DB Packet Storm | |
268965 | - | secure_elements | class_5_enterprise_vulnerability_management | Upgrade to 2.8.1 |
NVD-CWE-Other
|
CVE-2006-2710 | 2017-07-20 10:31 | 2006-06-1 | Show | GitHub Exploit DB Packet Storm | |
268966 | - | secure_elements | class_5_enterprise_vulnerability_management | Secure Elements Class 5 AVR (aka C5 EVM) 2.8.1 and earlier, and possibly later 2.8.x releases, uses the same initialization vector and key for each message session, which allows remote attackers to o… |
NVD-CWE-Other
|
CVE-2006-2711 | 2017-07-20 10:31 | 2006-06-1 | Show | GitHub Exploit DB Packet Storm | |
268967 | - | secure_elements | class_5_enterprise_vulnerability_management | Upgrade to 2.8.1 |
NVD-CWE-Other
|
CVE-2006-2711 | 2017-07-20 10:31 | 2006-06-1 | Show | GitHub Exploit DB Packet Storm | |
268968 | - | secure_elements | class_5_enterprise_vulnerability_management | Secure Elements Class 5 AVR (aka C5 EVM) client and server before 2.8.1 do not verify the integrity of a message digest, which allows remote attackers to modify and replay messages. |
NVD-CWE-Other
|
CVE-2006-2712 | 2017-07-20 10:31 | 2006-06-1 | Show | GitHub Exploit DB Packet Storm | |
268969 | - | secure_elements | class_5_enterprise_vulnerability_management | Upgrade to version 2.8.1 |
NVD-CWE-Other
|
CVE-2006-2712 | 2017-07-20 10:31 | 2006-06-1 | Show | GitHub Exploit DB Packet Storm | |
268970 | - | secure_elements | c5_enterprise_vulnerability_management | Secure Elements Class 5 AVR client (aka C5 EVM) before 2.8.1 generates predictable CEIDs, which allows remote attackers to determine the CEID of a protected asset, which can be used in other attacks … |
NVD-CWE-Other
|
CVE-2006-2713 | 2017-07-20 10:31 | 2006-06-1 | Show | GitHub Exploit DB Packet Storm |