You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Oct. 23, 2024, 4:02 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
197631 | 4.3 | 警告 | Etomite Project | - | Etomite におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-4264 | 2011-12-6 12:01 | 2011-12-6 | Show | GitHub Exploit DB Packet Storm |
197632 | 7.5 | 危険 | jonkemp | - | WordPress 用 WordPress Users プラグインの wp-users.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-4669 | 2011-12-5 16:08 | 2011-12-2 | Show | GitHub Exploit DB Packet Storm |
197633 | 7.5 | 危険 | IBM | - | IBM Tivoli Netcool/Reporter における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2011-4668 | 2011-12-5 16:07 | 2011-12-2 | Show | GitHub Exploit DB Packet Storm |
197634 | 5 | 警告 | Schneider Electric | - | Schneider Electric の複数の製品におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2011-4036 | 2011-12-5 16:06 | 2011-10-24 | Show | GitHub Exploit DB Packet Storm |
197635 | 4.3 | 警告 | Schneider Electric | - | Schneider Electric の複数の製品におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-4035 | 2011-12-5 16:05 | 2011-10-24 | Show | GitHub Exploit DB Packet Storm |
197636 | 9.3 | 危険 | Schneider Electric | - | Steema TeeChart ActiveX コントロールにおけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2011-4034 | 2011-12-5 16:05 | 2011-10-24 | Show | GitHub Exploit DB Packet Storm |
197637 | 4.3 | 警告 | Schneider Electric | - | Steema TeeChart ActiveX コントロールにおけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2011-4033 | 2011-12-5 16:03 | 2011-10-24 | Show | GitHub Exploit DB Packet Storm |
197638 | 5 | 警告 | PrestaShop | - | Prestashop の admin/displayImage.php における CRLF インジェクションの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2011-4545 | 2011-12-5 16:01 | 2011-12-2 | Show | GitHub Exploit DB Packet Storm |
197639 | 4.3 | 警告 | PrestaShop | - | Prestashop におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-4544 | 2011-12-5 16:00 | 2011-12-1 | Show | GitHub Exploit DB Packet Storm |
197640 | 4.3 | 警告 | atmail pty ltd | - | AtMail Open におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-4540 | 2011-12-5 15:58 | 2011-12-1 | Show | GitHub Exploit DB Packet Storm |
Update Date:Oct. 23, 2024, 4:18 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
291 | 8.8 |
HIGH
Network |
opensuse mozilla debian canonical |
leap opensuse firefox debian_linux ubuntu_linux |
Heap-based buffer overflow in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 allows remote attackers to execute arbitrary code via foreign-context HTML5 fragments, as demonstrated by fr… Update |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2016-2819 | 2024-10-22 22:54 | 2016-06-13 | Show | GitHub Exploit DB Packet Storm |
292 | 8.8 |
HIGH
Network |
mozilla debian redhat novell opensuse canonical |
firefox debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_server_aus enterprise_linux_for_scientific_computing enterprise_linux_workstation enterpris… |
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 allow remote attackers to cause a denial of service (memory corruption and a… Update |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2016-2818 | 2024-10-22 22:54 | 2016-06-13 | Show | GitHub Exploit DB Packet Storm |
293 | - |
mozilla oracle novell |
firefox_esr firefox solaris suse_linux_enterprise_server suse_linux_enterprise_desktop suse_linux_enterprise_software_development_kit |
PDF.js in Mozilla Firefox before 39.0 and Firefox ESR 31.x before 31.8 and 38.x before 38.1 enables excessive privileges for internal Workers, which might allow remote attackers to execute arbitrary … Update |
CWE-17
Code |
CVE-2015-2743 | 2024-10-22 22:54 | 2015-07-6 | Show | GitHub Exploit DB Packet Storm | |
294 | - |
mozilla oracle |
firefox solaris firefox_esr |
Mozilla Firefox before 39.0, Firefox ESR 38.x before 38.1, and Thunderbird before 38.1 do not enforce key pinning upon encountering an X.509 certificate problem that generates a user dialog, which al… Update |
CWE-310
Cryptographic Issues |
CVE-2015-2741 | 2024-10-22 22:54 | 2015-07-6 | Show | GitHub Exploit DB Packet Storm | |
295 | - |
mozilla canonical novell debian oracle |
thunderbird firefox_esr firefox ubuntu_linux suse_linux_enterprise_server debian_linux suse_linux_enterprise_desktop suse_linux_enterprise_software_development_kit solaris |
Buffer overflow in the nsXMLHttpRequest::AppendToResponseText function in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 might allow remot… Update |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2015-2740 | 2024-10-22 22:54 | 2015-07-6 | Show | GitHub Exploit DB Packet Storm | |
296 | - |
mozilla canonical novell debian oracle |
firefox ubuntu_linux suse_linux_enterprise_server suse_linux_enterprise_desktop suse_linux_enterprise_software_development_kit debian_linux firefox_esr solaris thunderbird |
The ArrayBufferBuilder::append function in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 accesses unintended memory locations, which has … Update |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2015-2739 | 2024-10-22 22:54 | 2015-07-6 | Show | GitHub Exploit DB Packet Storm | |
297 | - |
canonical suse debian mozilla oracle |
ubuntu_linux linux_enterprise_server linux_enterprise_software_development_kit linux_enterprise_desktop suse_linux_enterprise_server debian_linux firefox firefox_esr thunderbi… |
The YCbCrImageDataDeserializer::ToDataSourceSurface function in the YCbCr implementation in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1… Update |
CWE-17
Code |
CVE-2015-2738 | 2024-10-22 22:54 | 2015-07-6 | Show | GitHub Exploit DB Packet Storm | |
298 | - |
mozilla canonical oracle suse debian |
firefox_esr firefox ubuntu_linux solaris linux_enterprise_server linux_enterprise_software_development_kit linux_enterprise_desktop suse_linux_enterprise_server debian_linux | The rx::d3d11::SetBufferData function in the Direct3D 11 implementation in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 reads data from … Update |
CWE-17
Code |
CVE-2015-2737 | 2024-10-22 22:54 | 2015-07-6 | Show | GitHub Exploit DB Packet Storm | |
299 | - |
mozilla oracle canonical novell debian |
firefox thunderbird firefox_esr solaris ubuntu_linux suse_linux_enterprise_server debian_linux suse_linux_enterprise_desktop suse_linux_enterprise_software_development_kit |
The nsZipArchive::BuildFileList function in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 accesses unintended memory locations, which all… Update |
CWE-17
Code |
CVE-2015-2736 | 2024-10-22 22:54 | 2015-07-6 | Show | GitHub Exploit DB Packet Storm | |
300 | - |
mozilla canonical novell debian oracle |
firefox firefox_esr thunderbird ubuntu_linux suse_linux_enterprise_server debian_linux suse_linux_enterprise_desktop suse_linux_enterprise_software_development_kit solaris |
nsZipArchive.cpp in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 accesses unintended memory locations, which allows remote attackers to … Update |
CWE-17
Code |
CVE-2015-2735 | 2024-10-22 22:54 | 2015-07-6 | Show | GitHub Exploit DB Packet Storm |