|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 19, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 224411 | 5.5 | 警告 | Moodle | - | Moodle の course/loginas.php における "login as" アクションを実行される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2014-0009 | 2014-01-23 17:28 | 2014-01-20 | Show | GitHub Exploit DB Packet Storm |
| 224412 | 4 | 警告 | Moodle | - | Moodle の lib/adminlib.php における重要な情報を取得される脆弱性 |
CWE-255
証明書・パスワード管理 |
CVE-2014-0008 | 2014-01-23 17:27 | 2014-01-20 | Show | GitHub Exploit DB Packet Storm |
| 224413 | 6.8 | 警告 | Moodle | - | Moodle の user/profile/index.php におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2014-0010 | 2014-01-23 17:27 | 2014-01-20 | Show | GitHub Exploit DB Packet Storm |
| 224414 | 4.3 | 警告 | WordPress.org | - | WordPress の wp-includes/default-filters.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-6633 | 2014-01-23 17:26 | 2012-06-15 | Show | GitHub Exploit DB Packet Storm |
| 224415 | 4 | 警告 | F5 Networks | - | F5 BIG-IP の sam/admin/vpe2/public/php/server.php における XML 外部エンティティの脆弱性 |
CWE-200
情報漏えい |
CVE-2012-2997 | 2014-01-23 17:16 | 2012-09-3 | Show | GitHub Exploit DB Packet Storm |
| 224416 | 7.5 | 危険 | 2GLux | - | Joomla! 用 2Glux Sexy Polling コンポーネントにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2013-7219 | 2014-01-23 17:15 | 2013-12-26 | Show | GitHub Exploit DB Packet Storm |
| 224417 | 7.5 | 危険 | Hornbill Corporate Limited | - | Hornbill Supportworks ITSM の reports/calldiary.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2013-2594 | 2014-01-23 17:14 | 2013-04-24 | Show | GitHub Exploit DB Packet Storm |
| 224418 | 2.1 | 注意 | kernel.org レッドハット |
- | util-linux のマウントおよびアンマウントにおける制限されたディレクトリの存在を特定される脆弱性 |
CWE-200
情報漏えい |
CVE-2013-0157 | 2014-01-23 16:53 | 2013-02-21 | Show | GitHub Exploit DB Packet Storm |
| 224419 | 4.3 | 警告 | Hiox Softwares Pvt Ltd. | - | HIOX Guest Book の add.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2014-1620 | 2014-01-23 16:44 | 2014-01-5 | Show | GitHub Exploit DB Packet Storm |
| 224420 | 6.8 | 警告 | Expat | - | Expat におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2013-0340 | 2014-01-23 16:33 | 2013-02-21 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 20, 2026, 4:01 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 211071 | 5.3 |
MEDIUM
Network |
siemens |
cpu_1504d_tf_firmware cpu_1507d_tf_firmware cpu_1515sp_pc2_tf_firmware simatic_s7_plcsim_advanced_firmware simatic_s7-1500_software_controller tim_1531_irc_firmware cpu_1211c_firmwa… |
A vulnerability has been identified in SIMATIC Drive Controller family (All versions < V2.9.2), SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants) (All versions < V21.9), SIMATIC… |
CWE-863
Incorrect Authorization |
CVE-2020-28397 | 2024-11-21 14:22 | 2021-08-10 | Show | GitHub Exploit DB Packet Storm |
| 211072 | 9.8 |
CRITICAL
Network |
jeecg | jeecg_boot | An arbitrary file upload vulnerability in /jeecg-boot/sys/common/upload of jeecg-boot CMS 2.3 allows attackers to execute arbitrary code. |
CWE-434
Unrestricted Upload of File with Dangerous Type |
CVE-2020-28088 | 2024-11-21 14:22 | 2021-08-7 | Show | GitHub Exploit DB Packet Storm |
| 211073 | 7.5 |
HIGH
Network |
jeecg | jeecg_boot | A SQL injection vulnerability in /jeecg boot/sys/dict/loadtreedata of jeecg-boot CMS 2.3 allows attackers to access sensitive database information. |
CWE-89
SQL Injection |
CVE-2020-28087 | 2024-11-21 14:22 | 2021-08-7 | Show | GitHub Exploit DB Packet Storm |
| 211074 | 7.5 |
HIGH
Network |
siemens |
dk_standard_ethernet_controller_evaluation_kit_firmware ek-ertec_200_evaulation_kit_firmware ek-ertec_200p_evaluation_kit_firmware ruggedcom_rm1224_firmware scalance_m-800_firmware sca… |
Affected devices contain a vulnerability that allows an unauthenticated attacker to trigger a denial-of-service condition. The vulnerability can be triggered if a large amount of DCP reset packets ar… |
CWE-770
Allocation of Resources Without Limits or Throttling |
CVE-2020-28400 | 2024-11-21 14:22 | 2021-07-13 | Show | GitHub Exploit DB Packet Storm |
| 211075 | 7.8 |
HIGH
Local |
prusa3d | prusaslicer | An out-of-bounds write vulnerability exists in the Admesh stl_fix_normal_directions() functionality of Prusa Research PrusaSlicer 2.2.0 and Master (commit 4b040b856). A specially crafted AMF file can… |
CWE-787
Out-of-bounds Write |
CVE-2020-28598 | 2024-11-21 14:22 | 2021-07-8 | Show | GitHub Exploit DB Packet Storm |
| 211076 | 4.3 |
MEDIUM
Network |
dovecot fedoraproject |
dovecot fedora |
The Sieve engine in Dovecot before 2.3.15 allows Uncontrolled Resource Consumption, as demonstrated by a situation with a complex regular expression for the regex extension. |
CWE-770
Allocation of Resources Without Limits or Throttling |
CVE-2020-28200 | 2024-11-21 14:22 | 2021-06-28 | Show | GitHub Exploit DB Packet Storm |
| 211077 | 5.9 |
MEDIUM
Physics |
linux netapp |
linux_kernel cloud_backup h410c_firmware h300s_firmware h500s_firmware h700s_firmware h300e_firmware h500e_firmware h700e_firmware h410s_firmware |
The vgacon subsystem in the Linux kernel before 5.8.10 mishandles software scrollback. There is a vgacon_scrolldelta out-of-bounds read, aka CID-973c096f6a85. |
CWE-125
Out-of-bounds Read |
CVE-2020-28097 | 2024-11-21 14:22 | 2021-06-24 | Show | GitHub Exploit DB Packet Storm |
| 211078 | 7.5 |
HIGH
Network |
gulpjs oracle |
glob-parent communications_cloud_native_core_policy |
This affects the package glob-parent before 5.1.2. The enclosure regex used to check for strings ending in enclosure containing path separator. |
CWE-400
Uncontrolled Resource Consumption |
CVE-2020-28469 | 2024-11-21 14:22 | 2021-06-4 | Show | GitHub Exploit DB Packet Storm |
| 211079 | 9.8 |
CRITICAL
Network |
articlecms_project | articlecms | A file upload issue exists in all versions of ArticleCMS which allows malicious users to getshell. |
CWE-434
Unrestricted Upload of File with Dangerous Type |
CVE-2020-28063 | 2024-11-21 14:22 | 2021-05-14 | Show | GitHub Exploit DB Packet Storm |
| 211080 | 7.5 |
HIGH
Network |
siemens |
scalance_xm-400_firmware scalance_xr524_firmware scalance_xr526_firmware scalance_xr528_firmware scalance_xr552_firmware scalance_xm416-4c_firmware scalance_xm408-8c_firmware sca… |
An unauthenticated remote attacker could create a permanent denial-of-service condition by sending specially crafted OSPF packets. Successful exploitation requires OSPF to be enabled on an affected d… | - | CVE-2020-28393 | 2024-11-21 14:22 | 2021-05-12 | Show | GitHub Exploit DB Packet Storm |