|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 16, 2026, 2 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 225791 | 5.8 | 警告 | IBM | - | IBM Security AppScan Enterprise および Rational Policy Tester における SSL サーバになりすまされる脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2012-0738 | 2013-01-4 12:08 | 2012-12-28 | Show | GitHub Exploit DB Packet Storm |
| 225792 | 5 | 警告 | IBM Apache Software Foundation 富士通 サイバートラスト株式会社 ヒューレット・パッカード ターボリナックス オラクル 日立 レッドハット |
- | Apache Portable Utility ライブラリの apr_brigade_split_line 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-119
バッファエラー |
CVE-2010-1623 | 2012-12-28 18:39 | 2010-10-1 | Show | GitHub Exploit DB Packet Storm |
| 225793 | 2.6 | 注意 | Google Mozilla Foundation |
- | 複数の製品で使用される SPDY プロトコルにおける平文の HTTP ヘッダを取得される脆弱性 |
CWE-310
暗号の問題 |
CVE-2012-4930 | 2012-12-28 18:12 | 2012-09-15 | Show | GitHub Exploit DB Packet Storm |
| 225794 | 6.8 | 警告 | Google Mozilla Foundation |
- | Google Chrome の OpenType サニタイザにおける一つずれ (Off-by-one) エラーの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2011-3062 | 2012-12-28 18:09 | 2012-03-28 | Show | GitHub Exploit DB Packet Storm |
| 225795 | 7.6 | 危険 | Post Oak Traffic Systems | - | Post Oak AWAM Bluetooth Reader Traffic System におけるデバイスを偽装される脆弱性 |
CWE-310
暗号の問題 |
CVE-2012-4687 | 2012-12-28 16:25 | 2011-11-30 | Show | GitHub Exploit DB Packet Storm |
| 225796 | 4.3 | 警告 | 日立 | - | 複数の日立製品に含まれる Collaboration - Bulletin board におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
- | 2012-12-28 16:17 | 2012-12-25 | Show | GitHub Exploit DB Packet Storm |
| 225797 | 4.3 | 警告 | Catalin Florian Radut | - | Drupal 用 Zero Point モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-5591 | 2012-12-28 16:06 | 2012-11-28 | Show | GitHub Exploit DB Packet Storm |
| 225798 | 7.5 | 危険 | Script Head | - | Drupal 用 Webmail Plus モジュールにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2012-5590 | 2012-12-28 16:06 | 2012-11-28 | Show | GitHub Exploit DB Packet Storm |
| 225799 | 3.5 | 注意 | Net Genius | - | Drupal 用 MultiLink モジュールにおける任意のノードタイトルを読まれる脆弱性 |
CWE-200
情報漏えい |
CVE-2012-5589 | 2012-12-28 16:04 | 2012-11-28 | Show | GitHub Exploit DB Packet Storm |
| 225800 | 2.6 | 注意 | Matthias Hutterer | - | Drupal 用 Email Field モジュールにおける電子メールを送信される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2012-5588 | 2012-12-28 16:02 | 2012-11-28 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 16, 2026, 4 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 212431 | 5.5 |
MEDIUM
Local |
openexr fedoraproject canonical opensuse debian apple |
openexr fedora ubuntu_linux leap debian_linux tvos iphone_os icloud itunes watchos ipados mac_os_x |
An issue was discovered in OpenEXR before 2.4.1. There is an std::vector out-of-bounds read and write, as demonstrated by ImfTileOffsets.cpp. |
CWE-125 CWE-787 Out-of-bounds Read Out-of-bounds Write |
CVE-2020-11763 | 2024-11-21 13:58 | 2020-04-15 | Show | GitHub Exploit DB Packet Storm |
| 212432 | 5.5 |
MEDIUM
Local |
openexr fedoraproject canonical opensuse debian apple |
openexr fedora ubuntu_linux leap debian_linux mac_os_x tvos iphone_os icloud itunes watchos ipados |
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read and write in DwaCompressor::uncompress in ImfDwaCompressor.cpp when handling the UNKNOWN compression case. |
CWE-125 CWE-787 Out-of-bounds Read Out-of-bounds Write |
CVE-2020-11762 | 2024-11-21 13:58 | 2020-04-15 | Show | GitHub Exploit DB Packet Storm |
| 212433 | 5.5 |
MEDIUM
Local |
openexr fedoraproject canonical debian apple |
openexr fedora ubuntu_linux debian_linux mac_os_x tvos iphone_os icloud itunes watchos ipados |
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read during Huffman uncompression, as demonstrated by FastHufDecoder::refill in ImfFastHuf.cpp. |
CWE-125
Out-of-bounds Read |
CVE-2020-11761 | 2024-11-21 13:58 | 2020-04-15 | Show | GitHub Exploit DB Packet Storm |
| 212434 | 5.5 |
MEDIUM
Local |
openexr fedoraproject canonical opensuse debian apple |
openexr fedora ubuntu_linux leap debian_linux mac_os_x tvos iphone_os icloud itunes watchos ipados |
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read during RLE uncompression in rleUncompress in ImfRle.cpp. |
CWE-125
Out-of-bounds Read |
CVE-2020-11760 | 2024-11-21 13:58 | 2020-04-15 | Show | GitHub Exploit DB Packet Storm |
| 212435 | 5.5 |
MEDIUM
Local |
openexr fedoraproject canonical debian apple |
openexr fedora ubuntu_linux debian_linux tvos iphone_os icloud itunes watchos ipados mac_os_x |
An issue was discovered in OpenEXR before 2.4.1. Because of integer overflows in CompositeDeepScanLine::Data::handleDeepFrameBuffer and readSampleCountForLineBlock, an attacker can write to an out-of… |
CWE-190
Integer Overflow or Wraparound |
CVE-2020-11759 | 2024-11-21 13:58 | 2020-04-15 | Show | GitHub Exploit DB Packet Storm |
| 212436 | 5.5 |
MEDIUM
Local |
openexr fedoraproject canonical opensuse debian apple |
openexr fedora ubuntu_linux leap debian_linux mac_os_x tvos iphone_os icloud itunes watchos ipados |
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read in ImfOptimizedPixelReading.h. |
CWE-125
Out-of-bounds Read |
CVE-2020-11758 | 2024-11-21 13:58 | 2020-04-15 | Show | GitHub Exploit DB Packet Storm |
| 212437 | 5.5 |
MEDIUM
Local |
cellebrite | ufed_firmware | Cellebrite UFED 5.0 through 7.29 uses four hardcoded RSA private keys to authenticate to the ADB daemon on target devices. Extracted keys can be used to place evidence onto target devices when perfor… |
CWE-798
Use of Hard-coded Credentials |
CVE-2020-11723 | 2024-11-21 13:58 | 2020-04-15 | Show | GitHub Exploit DB Packet Storm |
| 212438 | 5.5 |
MEDIUM
Local |
xen debian fedoraproject opensuse |
xen debian_linux fedora leap |
An issue was discovered in xenoprof in Xen through 4.13.x, allowing guest OS users (without active profiling) to obtain sensitive information about other guests. Unprivileged guests can request to ma… |
CWE-212
Improper Removal of Sensitive Information Before Storage or Transfer |
CVE-2020-11740 | 2024-11-21 13:58 | 2020-04-14 | Show | GitHub Exploit DB Packet Storm |
| 212439 | 7.5 |
HIGH
Network |
snapcreek | duplicator | The Snap Creek Duplicator plugin before 1.3.28 for WordPress (and Duplicator Pro before 3.8.7.1) allows Directory Traversal via ../ in the file parameter to duplicator_download or duplicator_init. |
CWE-22
Path Traversal |
CVE-2020-11738 | 2024-11-21 13:58 | 2020-04-14 | Show | GitHub Exploit DB Packet Storm |
| 212440 | 3.9 |
LOW
Local |
gnome debian canonical |
file-roller debian_linux ubuntu_linux |
fr-archive-libarchive.c in GNOME file-roller through 3.36.1 allows Directory Traversal during extraction because it lacks a check of whether a file's parent is a symlink to a directory outside of the… |
CWE-22 CWE-59 Path Traversal Link Following |
CVE-2020-11736 | 2024-11-21 13:58 | 2020-04-14 | Show | GitHub Exploit DB Packet Storm |