|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 21, 2026, 6:01 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 225401 | 5 | 警告 | Blink Web Effects | - | WordPress 用 Social Media Widget プラグインにおける任意のファイルのアップロードを強制される脆弱性 |
CWE-noinfo
情報不足 |
CVE-2013-1949 | 2013-04-30 17:51 | 2013-04-9 | Show | GitHub Exploit DB Packet Storm |
| 225402 | 10 | 危険 | Rob Westgeest | - | Ruby 用 md2pdf gem の converter.rb における任意のコマンドを実行される脆弱性 |
CWE-noinfo
情報不足 |
CVE-2013-1948 | 2013-04-30 17:51 | 2013-04-10 | Show | GitHub Exploit DB Packet Storm |
| 225403 | 9.3 | 危険 | Kelly D. Redding | - | Ruby 用 kelredd-pruview gem における任意のコマンドを実行される脆弱性 |
CWE-78
OSコマンド・インジェクション |
CVE-2013-1947 | 2013-04-30 17:50 | 2013-04-4 | Show | GitHub Exploit DB Packet Storm |
| 225404 | 9.3 | 危険 | karteek-docsplit | - | Ruby 用 Karteek Docsplit gem における任意のコマンドを実行される脆弱性 |
CWE-78
OSコマンド・インジェクション |
CVE-2013-1933 | 2013-04-30 17:49 | 2013-04-1 | Show | GitHub Exploit DB Packet Storm |
| 225405 | 6.8 | 警告 | Novell plataformatec |
- | Ruby 用 Devise gem における不正な結果が返される脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2013-0233 | 2013-04-30 17:48 | 2013-01-28 | Show | GitHub Exploit DB Packet Storm |
| 225406 | 7.5 | 危険 | Grape Erik Michaels-Ober |
- | Grape などの製品で使用される Ruby 用 multi_xml gem におけるオブジェクトインジェクション攻撃を誘発される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2013-0175 | 2013-04-30 17:43 | 2013-01-10 | Show | GitHub Exploit DB Packet Storm |
| 225407 | 5 | 警告 | Ruby-lang.org | - | Ruby における safe-level の制限を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2012-4466 | 2013-04-30 17:29 | 2012-10-3 | Show | GitHub Exploit DB Packet Storm |
| 225408 | 5 | 警告 | Ruby-lang.org | - | Ruby における safe-level の制限を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2012-4464 | 2013-04-30 17:25 | 2012-10-3 | Show | GitHub Exploit DB Packet Storm |
| 225409 | 5.4 | 警告 | シトリックス・システムズ | - | NetScaler Access Gateway Enterprise Edition に脆弱性 |
CWE-noinfo
情報不足 |
CVE-2013-2767 | 2013-04-30 12:45 | 2013-04-26 | Show | GitHub Exploit DB Packet Storm |
| 225410 | 9.3 | 危険 | シスコシステムズ | - | Cisco MDS 9000 および Nexus 5000 デバイス用 Cisco Device Manager における任意のコマンドを実行される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2013-1192 | 2013-04-26 16:56 | 2013-04-24 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 21, 2026, 4:10 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 211511 | 7.5 |
HIGH
Network |
libvncserver_project debian opensuse canonical |
libvncserver debian_linux leap ubuntu_linux |
An issue was discovered in LibVNCServer before 0.9.13. Byte-aligned data is accessed through uint32_t pointers in libvncclient/rfbproto.c. NOTE: there is reportedly "no trust boundary crossed. |
NVD-CWE-Other
|
CVE-2020-14399 | 2024-11-21 14:03 | 2020-06-18 | Show | GitHub Exploit DB Packet Storm |
| 211512 | 7.5 |
HIGH
Network |
libvnc_project canonical debian siemens opensuse |
libvncserver ubuntu_linux debian_linux simatic_itc1500_firmware simatic_itc1500_pro_firmware simatic_itc1900_firmware simatic_itc1900_pro_firmware simatic_itc2200_firmware sim… |
An issue was discovered in LibVNCServer before 0.9.13. An improperly closed TCP connection causes an infinite loop in libvncclient/sockets.c. |
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop') |
CVE-2020-14398 | 2024-11-21 14:03 | 2020-06-18 | Show | GitHub Exploit DB Packet Storm |
| 211513 | 7.5 |
HIGH
Network |
libvnc_project canonical debian siemens opensuse |
libvncserver ubuntu_linux debian_linux simatic_itc1500_firmware simatic_itc1500_pro_firmware simatic_itc1900_firmware simatic_itc1900_pro_firmware simatic_itc2200_firmware sim… |
An issue was discovered in LibVNCServer before 0.9.13. libvncserver/rfbregion.c has a NULL pointer dereference. |
CWE-476
NULL Pointer Dereference |
CVE-2020-14397 | 2024-11-21 14:03 | 2020-06-18 | Show | GitHub Exploit DB Packet Storm |
| 211514 | 7.5 |
HIGH
Network |
libvnc_project canonical debian siemens |
libvncserver ubuntu_linux debian_linux simatic_itc1500_firmware simatic_itc1500_pro_firmware simatic_itc1900_firmware simatic_itc1900_pro_firmware simatic_itc2200_firmware sim… |
An issue was discovered in LibVNCServer before 0.9.13. libvncclient/tls_openssl.c has a NULL pointer dereference. |
CWE-476
NULL Pointer Dereference |
CVE-2020-14396 | 2024-11-21 14:03 | 2020-06-18 | Show | GitHub Exploit DB Packet Storm |
| 211515 | 9.8 |
CRITICAL
Network |
irfanview | b3d | IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+1cbf heap-based out-of-bounds write. |
CWE-787
Out-of-bounds Write |
CVE-2020-13880 | 2024-11-21 14:02 | 2024-01-5 | Show | GitHub Exploit DB Packet Storm |
| 211516 | 9.8 |
CRITICAL
Network |
irfanview | b3d | IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+214f heap-based out-of-bounds write. |
CWE-787
Out-of-bounds Write |
CVE-2020-13879 | 2024-11-21 14:02 | 2024-01-5 | Show | GitHub Exploit DB Packet Storm |
| 211517 | 9.8 |
CRITICAL
Network |
irfanview | b3d | IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+27ef heap-based out-of-bounds write. |
CWE-787
Out-of-bounds Write |
CVE-2020-13878 | 2024-11-21 14:02 | 2024-01-5 | Show | GitHub Exploit DB Packet Storm |
| 211518 | 7.5 |
HIGH
Network |
mi | xiaomi_router_firmware | When Xiaomi router firmware is updated in 2020, there is an unauthenticated API that can reveal WIFI password vulnerability. This vulnerability is caused by the lack of access control policies on som… |
CWE-306
Missing Authentication for Critical Function |
CVE-2020-14140 | 2024-11-21 14:02 | 2023-03-30 | Show | GitHub Exploit DB Packet Storm |
| 211519 | 9.8 |
CRITICAL
Network |
mi | xiaomi | The Xiaomi Security Center expresses heartfelt thanks to ADLab of VenusTech ! At the same time, we also welcome more outstanding and professional security experts and security teams to join the Mi Se… |
NVD-CWE-noinfo
|
CVE-2020-14131 | 2024-11-21 14:02 | 2022-10-12 | Show | GitHub Exploit DB Packet Storm |
| 211520 | 9.8 |
CRITICAL
Network |
mi | xiaomi | A logic vulnerability exists in a Xiaomi product. The vulnerability is caused by an identity verification failure, which can be exploited by an attacker who can obtain a brief elevation of privilege. |
NVD-CWE-noinfo
|
CVE-2020-14129 | 2024-11-21 14:02 | 2022-10-12 | Show | GitHub Exploit DB Packet Storm |