|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 12, 2026, 12:01 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 226441 | 4.3 | 警告 | IBM | - | IBM WebSphere Portal におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2013-0587 | 2013-08-19 14:45 | 2013-08-8 | Show | GitHub Exploit DB Packet Storm |
| 226442 | 3.5 | 注意 | IBM | - | IBM InfoSphere Information Server におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2013-0585 | 2013-08-19 14:44 | 2013-08-9 | Show | GitHub Exploit DB Packet Storm |
| 226443 | 2.6 | 注意 | Anchor | - | Anchor CMS の article.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2013-5099 | 2013-08-19 14:42 | 2013-07-18 | Show | GitHub Exploit DB Packet Storm |
| 226444 | 4.3 | 警告 | AlienVault | - | AlienVault Open Source Security Information Management におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2013-5300 | 2013-08-19 14:39 | 2013-08-8 | Show | GitHub Exploit DB Packet Storm |
| 226445 | 7.2 | 危険 | シーメンス | - | Siemens COMOS のクライアントアプリケーションにおける権限を取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2013-4943 | 2013-08-19 14:38 | 2013-08-9 | Show | GitHub Exploit DB Packet Storm |
| 226446 | 5 | 警告 | シスコシステムズ | - | Cisco Finesse における重要な情報を取得される脆弱性 |
CWE-255
証明書・パスワード管理 |
CVE-2013-3455 | 2013-08-19 14:35 | 2013-08-12 | Show | GitHub Exploit DB Packet Storm |
| 226447 | 9.3 | 危険 | XnSoft | - | XnView におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2013-2577 | 2013-08-19 14:31 | 2013-07-18 | Show | GitHub Exploit DB Packet Storm |
| 226448 | 4.3 | 警告 | Novell Canonical MongoDB Inc. |
- | MongoDB で使用される mongo-python-driver におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-DesignError
|
CVE-2013-2132 | 2013-08-19 13:46 | 2013-05-31 | Show | GitHub Exploit DB Packet Storm |
| 226449 | 4.3 | 警告 | Happyworm ownCloud |
- | ownCloud Server などの製品で使用される jPlayer の Flash SWF コンポーネントにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2013-1942 | 2013-08-19 13:32 | 2013-03-21 | Show | GitHub Exploit DB Packet Storm |
| 226450 | 10 | 危険 | Apache Software Foundation | - | Apache Open For Business Project における任意の Unified Expression Language 機能を実行される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2013-2250 | 2013-08-16 11:45 | 2013-07-20 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 12, 2026, 4:20 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 208611 | 9.8 |
CRITICAL
Network |
asus | dsl-n17u_firmware | The ASUS DSL-N17U modem with firmware 1.1.0.2 allows attackers to access the admin interface by changing the admin password without authentication via a POST request to Advanced_System_Content.asp wi… |
CWE-287
Improper Authentication |
CVE-2020-35219 | 2024-11-21 14:27 | 2021-01-5 | Show | GitHub Exploit DB Packet Storm |
| 208612 | 5.5 |
MEDIUM
Local |
gnu redhat netapp broadcom |
binutils enterprise_linux hci_compute_node_firmware cloud_backup ontap_select_deploy_administration_utility solidfire_\&_hci_management_node solidfire\ _enterprise_sds_\&… |
There's a flaw in bfd_pef_parse_function_stubs of bfd/pef.c in binutils in versions prior to 2.34 which could allow an attacker who is able to submit a crafted file to be processed by objdump to caus… | - | CVE-2020-35507 | 2024-11-21 14:27 | 2021-01-5 | Show | GitHub Exploit DB Packet Storm |
| 208613 | 5.5 |
MEDIUM
Local |
gnu fedoraproject netapp broadcom |
binutils fedora cloud_backup ontap_select_deploy_administration_utility solidfire_\&_hci_management_node solidfire\ _enterprise_sds_\&_hci_storage_node brocade_fabric_ope… |
There's a flaw in bfd_pef_scan_start_address() of bfd/pef.c in binutils which could allow an attacker who is able to submit a crafted file to be processed by objdump to cause a NULL pointer dereferen… | - | CVE-2020-35496 | 2024-11-21 14:27 | 2021-01-5 | Show | GitHub Exploit DB Packet Storm |
| 208614 | 5.5 |
MEDIUM
Local |
gnu fedoraproject netapp broadcom |
binutils fedora cloud_backup ontap_select_deploy_administration_utility solidfire_\&_hci_management_node solidfire\ _enterprise_sds_\&_hci_storage_node brocade_fabric_ope… |
There's a flaw in binutils /bfd/pef.c. An attacker who is able to submit a crafted input file to be processed by the objdump program could cause a null pointer dereference. The greatest threat from t… | - | CVE-2020-35495 | 2024-11-21 14:27 | 2021-01-5 | Show | GitHub Exploit DB Packet Storm |
| 208615 | 6.1 |
MEDIUM
Local |
gnu fedoraproject netapp broadcom |
binutils fedora cloud_backup ontap_select_deploy_administration_utility solidfire_\&_hci_management_node solidfire\ _enterprise_sds_\&_hci_storage_node brocade_fabric_ope… |
There's a flaw in binutils /opcodes/tic4x-dis.c. An attacker who is able to submit a crafted input file to be processed by binutils could cause usage of uninitialized memory. The highest threat is to… | - | CVE-2020-35494 | 2024-11-21 14:27 | 2021-01-5 | Show | GitHub Exploit DB Packet Storm |
| 208616 | 5.5 |
MEDIUM
Local |
gnu fedoraproject netapp broadcom |
binutils fedora cloud_backup ontap_select_deploy_administration_utility solidfire_\&_hci_management_node solidfire\ _enterprise_sds_\&_hci_storage_node brocade_fabric_ope… |
A flaw exists in binutils in bfd/pef.c. An attacker who is able to submit a crafted PEF file to be parsed by objdump could cause a heap buffer overflow -> out-of-bounds read that could lead to an imp… | - | CVE-2020-35493 | 2024-11-21 14:27 | 2021-01-5 | Show | GitHub Exploit DB Packet Storm |
| 208617 | 9.0 |
CRITICAL
Network |
electronjs | zonote | zonote through 0.4.0 allows XSS via a crafted note, with resultant Remote Code Execution (because nodeIntegration in webPreferences is true). |
CWE-79
Cross-site Scripting |
CVE-2020-35717 | 2024-11-21 14:27 | 2021-01-1 | Show | GitHub Exploit DB Packet Storm |
| 208618 | 6.5 |
MEDIUM
Adjacent |
tenda | f3_firmware | Tenda N300 F3 12.01.01.48 devices allow remote attackers to obtain sensitive information (possibly including an http_passwd line) via a direct request for cgi-bin/DownloadCfg/RouterCfm.cfg, a related… |
CWE-425
Direct Request ('Forced Browsing') |
CVE-2020-35391 | 2024-11-21 14:27 | 2021-01-1 | Show | GitHub Exploit DB Packet Storm |
| 208619 | 7.6 |
HIGH
Network |
hgiga |
msr45_isherlock-antispam msr45_isherlock-user ssr45_isherlock-antispam ssr45_isherlock-user |
HGiga MailSherlock contains a SQL injection flaw. Attackers can inject and launch SQL commands in a URL parameter of specific cgi pages. |
CWE-89
SQL Injection |
CVE-2020-35743 | 2024-11-21 14:27 | 2020-12-31 | Show | GitHub Exploit DB Packet Storm |
| 208620 | 7.6 |
HIGH
Network |
hgiga |
msr45_isherlock-antispam msr45_isherlock-user ssr45_isherlock-antispam ssr45_isherlock-user |
HGiga MailSherlock contains a vulnerability of SQL Injection. Attackers can inject and launch SQL commands in a URL parameter. |
CWE-89
SQL Injection |
CVE-2020-35742 | 2024-11-21 14:27 | 2020-12-31 | Show | GitHub Exploit DB Packet Storm |