You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
|
Update Date":Jan. 31, 2025, 4:03 p.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
207581 | 6.5 | 警告 | バラクーダネットワークス | - | Barracuda Spam Firewall の Account View ページ内にある index.cgi における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-1094 | 2011-06-6 14:23 | 2008-12-15 | Show | GitHub Exploit DB Packet Storm |
207582 | 3.5 | 注意 | バラクーダネットワークス | - | 複数の Barracuda 製品の index.cgi におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-0971 | 2011-06-6 14:21 | 2008-12-15 | Show | GitHub Exploit DB Packet Storm |
207583 | 4.3 | 警告 | バラクーダネットワークス | - | Barracuda Spam Firewall の ldap_test.cgi におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-2333 | 2011-06-6 14:20 | 2008-05-22 | Show | GitHub Exploit DB Packet Storm |
207584 | 10 | 危険 | 7-Technologies | - | 7-Technologies Interactive Graphical SCADA System の logText 関数における任意のコードを実行される脆弱性 |
CWE-134
書式文字列の問題 |
CVE-2011-1568 | 2011-06-6 14:19 | 2011-04-5 | Show | GitHub Exploit DB Packet Storm |
207585 | 10 | 危険 | サイバートラスト株式会社 Mozilla Foundation レッドハット |
- | 複数の Mozilla 製品のブラウザエンジンにおける任意のコードを実行される脆弱性 |
CWE-noinfo
情報不足 |
CVE-2011-0075 | 2011-06-6 13:56 | 2011-04-28 | Show | GitHub Exploit DB Packet Storm |
207586 | 5 | 警告 | サイバートラスト株式会社 Mozilla Foundation レッドハット |
- | Windows 上で稼働する複数の Mozilla 製品におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2011-0071 | 2011-06-6 10:36 | 2011-04-28 | Show | GitHub Exploit DB Packet Storm |
207587 | 5 | 警告 | サイバートラスト株式会社 Mozilla Foundation |
- | Mozilla Firefox および SeaMonkey におけるフォームの入力履歴を読まれる脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2011-0067 | 2011-06-6 10:35 | 2011-04-28 | Show | GitHub Exploit DB Packet Storm |
207588 | 10 | 危険 | サイバートラスト株式会社 Mozilla Foundation レッドハット |
- | Mozilla Firefox および SeaMonkey における任意のコードを実行される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2011-0073 | 2011-06-6 10:34 | 2011-04-28 | Show | GitHub Exploit DB Packet Storm |
207589 | 9.3 | 危険 | サン・マイクロシステムズ The GIMP Team レッドハット |
- | GIMP の ReadImage 関数における任意のコードを実行される脆弱性 |
CWE-189
数値処理の問題 |
CVE-2009-1570 | 2011-06-6 10:20 | 2009-11-13 | Show | GitHub Exploit DB Packet Storm |
207590 | 2.1 | 注意 | Skype Technologies S.A. | - | Skype for Android における個人情報を読まれる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-1717 | 2011-06-3 10:25 | 2011-04-18 | Show | GitHub Exploit DB Packet Storm |
Update Date:Feb. 2, 2025, 4:09 a.m.
No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
---|---|---|---|---|---|---|---|---|---|---|---|
263841 | - | mamboxchange | laithai | Multiple unspecified vulnerabilities in Mambo LaiThai 4.5.5 have unknown impact and attack vectors related to (1) mod_login and (2) mod_template_chooser. |
NVD-CWE-noinfo
|
CVE-2008-0500 | 2017-08-8 10:29 | 2008-01-31 | Show | GitHub Exploit DB Packet Storm | |
263842 | - | sqlite_manager | sqlite_manager | PHP remote file inclusion vulnerability in spaw/dialogs/confirm.php in SQLiteManager 1.2.0 allows remote attackers to execute arbitrary PHP code via a URL in the spaw_root parameter. NOTE: the prove… |
CWE-94
Code Injection |
CVE-2008-0516 | 2017-08-8 10:29 | 2008-02-1 | Show | GitHub Exploit DB Packet Storm | |
263843 | - | softcart | softcart | Multiple cross-site scripting (XSS) vulnerabilities in SoftCart.exe in SoftCart 5.1.2.2 allow remote attackers to inject arbitrary web script or HTML via the (1) License_Plate, (2) License_State, (3)… |
CWE-79
Cross-site Scripting |
CVE-2008-0523 | 2017-08-8 10:29 | 2008-02-1 | Show | GitHub Exploit DB Packet Storm | |
263844 | - | yamaha |
rt107e rt52pro rt56v rt57i rt58i rt60w rt80i rta50i rta52i rta54i rta55i rtv700 rtw65b rtw65i rtx1000 rtx1100 rtx1500 srt100 |
Cross-site request forgery (CSRF) vulnerability in the management interface in multiple Yamaha RT series routers allows remote attackers to change password settings and probably other configuration s… |
CWE-352
Origin Validation Error |
CVE-2008-0524 | 2017-08-8 10:29 | 2008-02-1 | Show | GitHub Exploit DB Packet Storm | |
263845 | - | cisco |
skinny_client_control_protocol_\(sccp\)_firmware session_initiation_protocol_\(sip\)_firmware |
Cisco Unified IP Phone 7940, 7940G, 7960, and 7960G running SCCP firmware allows remote attackers to cause a denial of service (reboot) via a long ICMP echo request (ping) packet. |
CWE-20
Improper Input Validation |
CVE-2008-0526 | 2017-08-8 10:29 | 2008-02-15 | Show | GitHub Exploit DB Packet Storm | |
263846 | - | cisco |
skinny_client_control_protocol_\(sccp\)_firmware session_initiation_protocol_\(sip\)_firmware |
In order to download the patch, login is required |
CWE-20
Improper Input Validation |
CVE-2008-0526 | 2017-08-8 10:29 | 2008-02-15 | Show | GitHub Exploit DB Packet Storm | |
263847 | - | cisco |
skinny_client_control_protocol_\(sccp\)_firmware session_initiation_protocol_\(sip\)_firmware |
The HTTP server in Cisco Unified IP Phone 7935 and 7936 running SCCP firmware allows remote attackers to cause a denial of service (reboot) via a crafted HTTP request. |
CWE-20
Improper Input Validation |
CVE-2008-0527 | 2017-08-8 10:29 | 2008-02-15 | Show | GitHub Exploit DB Packet Storm | |
263848 | - | cisco |
skinny_client_control_protocol_\(sccp\)_firmware session_initiation_protocol_\(sip\)_firmware |
Patch download requires login |
CWE-20
Improper Input Validation |
CVE-2008-0527 | 2017-08-8 10:29 | 2008-02-15 | Show | GitHub Exploit DB Packet Storm | |
263849 | - | cisco |
skinny_client_control_protocol_\(sccp\)_firmware session_initiation_protocol_\(sip\)_firmware |
Buffer overflow in Cisco Unified IP Phone 7940, 7940G, 7960, and 7960G running SIP firmware might allow remote attackers to execute arbitrary code via a SIP message with crafted MIME data. |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2008-0528 | 2017-08-8 10:29 | 2008-02-15 | Show | GitHub Exploit DB Packet Storm | |
263850 | - | cisco |
skinny_client_control_protocol_\(sccp\)_firmware session_initiation_protocol_\(sip\)_firmware |
Patch requires login |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2008-0528 | 2017-08-8 10:29 | 2008-02-15 | Show | GitHub Exploit DB Packet Storm |