|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 14, 2026, 6:01 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 226341 | 7.5 | 危険 | phpwares | - | PHP Inventory の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4597 | 2012-12-20 19:28 | 2010-01-12 | Show | GitHub Exploit DB Packet Storm |
| 226342 | 4.3 | 警告 | phpwares | - | PHP Inventory の index.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4596 | 2012-12-20 19:28 | 2010-01-12 | Show | GitHub Exploit DB Packet Storm |
| 226343 | 6 | 警告 | phpwares | - | PHP Inventory の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4595 | 2012-12-20 19:28 | 2010-01-12 | Show | GitHub Exploit DB Packet Storm |
| 226344 | 4.3 | 警告 | wowd | - | Wowd クライアントの index.html におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4586 | 2012-12-20 19:28 | 2010-01-7 | Show | GitHub Exploit DB Packet Storm |
| 226345 | 7.5 | 危険 | XOOPS | - | XOOPS 用の Dictionary モジュールにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4582 | 2012-12-20 19:28 | 2010-01-6 | Show | GitHub Exploit DB Packet Storm |
| 226346 | 6.8 | 警告 | roseonlinecms | - | RoseOnlineCMS の modules/admincp.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-4581 | 2012-12-20 19:28 | 2010-01-6 | Show | GitHub Exploit DB Packet Storm |
| 226347 | 4.3 | 警告 | qproje | - | Joomla! 用の qpersonel コンポーネントにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4575 | 2012-12-20 19:28 | 2010-01-6 | Show | GitHub Exploit DB Packet Storm |
| 226348 | 6.8 | 警告 | phpshop | - | PhpShop におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2009-4572 | 2012-12-20 19:28 | 2010-01-5 | Show | GitHub Exploit DB Packet Storm |
| 226349 | 7.5 | 危険 | phpshop | - | PhpShop の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4571 | 2012-12-20 19:28 | 2010-01-5 | Show | GitHub Exploit DB Packet Storm |
| 226350 | 4.3 | 警告 | phpshop | - | PhpShop におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4570 | 2012-12-20 19:28 | 2010-01-5 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 14, 2026, 4 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 196791 | 5.3 |
MEDIUM
Network |
gitlab | gitlab | GitLab EE 12.4 and later through 12.7.2 has Incorrect Access Control. |
NVD-CWE-noinfo
|
CVE-2020-7976 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196792 | 5.3 |
MEDIUM
Network |
gitlab | gitlab | GitLab EE 10.1 through 12.7.2 allows Information Disclosure. |
NVD-CWE-noinfo
|
CVE-2020-7974 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196793 | 6.1 |
MEDIUM
Network |
gitlab | gitlab | GitLab through 12.7.2 allows XSS. |
CWE-79
Cross-site Scripting |
CVE-2020-7973 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196794 | 7.5 |
HIGH
Network |
gitlab | gitlab | GitLab EE 12.2 has Insecure Permissions (issue 2 of 2). |
CWE-276
Incorrect Default Permissions |
CVE-2020-7972 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196795 | 6.1 |
MEDIUM
Network |
gitlab | gitlab | GitLab EE 11.0 and later through 12.7.2 allows XSS. |
CWE-79
Cross-site Scripting |
CVE-2020-7971 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196796 | 7.5 |
HIGH
Network |
gitlab | gitlab | GitLab EE 8.0 and later through 12.7.2 allows Information Disclosure. |
NVD-CWE-noinfo
|
CVE-2020-7969 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196797 | 7.5 |
HIGH
Network |
gitlab | gitlab | GitLab EE 8.0 through 12.7.2 has Incorrect Access Control. |
CWE-862
Missing Authorization |
CVE-2020-7968 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196798 | 4.3 |
MEDIUM
Network |
gitlab | gitlab | GitLab EE 8.0 through 12.7.2 has Insecure Permissions (issue 1 of 2). |
CWE-276
Incorrect Default Permissions |
CVE-2020-7967 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196799 | 7.5 |
HIGH
Network |
gitlab | gitlab | GitLab EE 11.11 and later through 12.7.2 allows Directory Traversal. |
CWE-22
Path Traversal |
CVE-2020-7966 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196800 | 9.8 |
CRITICAL
Network |
gitlab | gitlab | GitLab EE 8.9 and later through 12.7.2 has Insecure Permission |
CWE-276
Incorrect Default Permissions |
CVE-2020-8114 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |