You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Nov. 17, 2024, 10 a.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
198301 | 7.5 | 危険 | CreateVision | - | CreateVision CMS の artykul_print.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2012-1778 | 2012-03-22 17:32 | 2012-03-19 | Show | GitHub Exploit DB Packet Storm |
198302 | 6.8 | 警告 | Webfolio CMS | - | Webfolio CMS におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2012-1498 | 2012-03-22 17:25 | 2012-03-19 | Show | GitHub Exploit DB Packet Storm |
198303 | 4.3 | 警告 | NetMechanica | - | NetMechanica NetDecision の HTTP Server におけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2012-1465 | 2012-03-22 17:22 | 2012-03-19 | Show | GitHub Exploit DB Packet Storm |
198304 | 5 | 警告 | NetMechanica | - | NetMechanica NetDecision の Dashboard Server におけるインストールパスを取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2012-1464 | 2012-03-22 17:22 | 2012-03-19 | Show | GitHub Exploit DB Packet Storm |
198305 | 6.8 | 警告 | Contao | - | Contao の main.php におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2012-1297 | 2012-03-22 17:18 | 2012-03-19 | Show | GitHub Exploit DB Packet Storm |
198306 | 4.3 | 警告 | tskynet | - | Kongreg8 におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-1789 | 2012-03-22 17:16 | 2012-03-19 | Show | GitHub Exploit DB Packet Storm |
198307 | 7.5 | 危険 | Dotclear | - | Dotclear の inc/swf/swfupload.swf における任意のコードを実行される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-5083 | 2012-03-22 17:15 | 2012-03-19 | Show | GitHub Exploit DB Packet Storm |
198308 | 4.3 | 警告 | WonderDesk | - | WonderDesk SQL の wonderdesk.cgi におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-1788 | 2012-03-22 16:59 | 2012-03-19 | Show | GitHub Exploit DB Packet Storm |
198309 | 4.3 | 警告 | s2Member | - | WordPress 用 s2Member Pro プラグインにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-5082 | 2012-03-22 16:55 | 2012-03-19 | Show | GitHub Exploit DB Packet Storm |
198310 | 5 | 警告 | Bitweaver | - | Bitweaver の wiki/rankings.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2010-5086 | 2012-03-22 16:54 | 2012-03-19 | Show | GitHub Exploit DB Packet Storm |
Update Date:Nov. 17, 2024, 5:17 a.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
1211 | 8.8 |
HIGH
Network |
- | - | SQL Server Native Client Remote Code Execution Vulnerability |
CWE-416
Use After Free |
CVE-2024-43459 | 2024-11-14 02:01 | 2024-11-13 | Show | GitHub Exploit DB Packet Storm |
1212 | 7.5 |
HIGH
Network |
- | - | Windows Registry Elevation of Privilege Vulnerability |
CWE-367
Time-of-check Time-of-use (TOCTOU) Race Condition |
CVE-2024-43452 | 2024-11-14 02:01 | 2024-11-13 | Show | GitHub Exploit DB Packet Storm |
1213 | 7.5 |
HIGH
Network |
- | - | Windows DNS Spoofing Vulnerability |
CWE-924
Improper Enforcement of Message Integrity During Transmission in a Communication Channel |
CVE-2024-43450 | 2024-11-14 02:01 | 2024-11-13 | Show | GitHub Exploit DB Packet Storm |
1214 | 6.8 |
MEDIUM
Physics |
- | - | Windows USB Video Class System Driver Elevation of Privilege Vulnerability |
CWE-125
Out-of-bounds Read |
CVE-2024-43449 | 2024-11-14 02:01 | 2024-11-13 | Show | GitHub Exploit DB Packet Storm |
1215 | 8.1 |
HIGH
Network |
- | - | Windows SMBv3 Server Remote Code Execution Vulnerability |
CWE-415
Double Free |
CVE-2024-43447 | 2024-11-14 02:01 | 2024-11-13 | Show | GitHub Exploit DB Packet Storm |
1216 | 5.9 |
MEDIUM
Network |
- | - | Microsoft Virtual Hard Disk (VHDX) Denial of Service Vulnerability |
CWE-591
Sensitive Data Storage in Improperly Locked Memory |
CVE-2024-38264 | 2024-11-14 02:01 | 2024-11-13 | Show | GitHub Exploit DB Packet Storm |
1217 | 8.8 |
HIGH
Network |
- | - | SQL Server Native Client Remote Code Execution Vulnerability |
CWE-122
Heap-based Buffer Overflow |
CVE-2024-38255 | 2024-11-14 02:01 | 2024-11-13 | Show | GitHub Exploit DB Packet Storm |
1218 | 6.2 |
MEDIUM
Local |
- | - | Windows Package Library Manager Information Disclosure Vulnerability |
CWE-693
Protection Mechanism Failure |
CVE-2024-38203 | 2024-11-14 02:01 | 2024-11-13 | Show | GitHub Exploit DB Packet Storm |
1219 | - | - | - | Improper input validation in the NPU driver could allow an attacker to supply a specially crafted pointer potentially leading to arbitrary code execution. | - | CVE-2024-21976 | 2024-11-14 02:01 | 2024-11-13 | Show | GitHub Exploit DB Packet Storm | |
1220 | - | - | - | Incorrect default permissions in the AMD Provisioning Console installation directory could allow an attacker to achieve privilege escalation, potentially resulting in arbitrary code execution. | - | CVE-2024-21958 | 2024-11-14 02:01 | 2024-11-13 | Show | GitHub Exploit DB Packet Storm |