|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 14, 2026, 10 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 226731 | 4.3 | 警告 | richard ellerbrock | - | IPplan の admin/usermanager におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-1732 | 2012-12-20 19:10 | 2009-05-20 | Show | GitHub Exploit DB Packet Storm |
| 226732 | 4.3 | 警告 | サン・マイクロシステムズ | - | Sun Java System Communications Express におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-1729 | 2012-12-20 19:10 | 2009-05-20 | Show | GitHub Exploit DB Packet Storm |
| 226733 | 9.3 | 危険 | サン・マイクロシステムズ | - | Sun Java SE Runtime Environment の deploytk.dll における任意のコードを実行される脆弱性 |
CWE-119
バッファエラー |
CVE-2009-1672 | 2012-12-20 19:10 | 2009-05-18 | Show | GitHub Exploit DB Packet Storm |
| 226734 | 9.3 | 危険 | サン・マイクロシステムズ | - | Sun Java SE Runtime Environment の deploytk.dll におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-1671 | 2012-12-20 19:10 | 2009-05-18 | Show | GitHub Exploit DB Packet Storm |
| 226735 | 7.5 | 危険 | tcpdb | - | TCPDB の user/index.php における admin アカウントを追加される脆弱性 |
CWE-287
不適切な認証 |
CVE-2009-1670 | 2012-12-20 19:10 | 2009-05-18 | Show | GitHub Exploit DB Packet Storm |
| 226736 | 10 | 危険 | Smarty | - | Smarty の libs/plugins/function.math.php における任意のコマンドを実行される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2009-1669 | 2012-12-20 19:10 | 2009-05-18 | Show | GitHub Exploit DB Packet Storm |
| 226737 | 4 | 警告 | TYPSoft | - | TYPSoft FTP Server におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2009-1668 | 2012-12-20 19:10 | 2009-05-18 | Show | GitHub Exploit DB Packet Storm |
| 226738 | 7.5 | 危険 | recipescript | - | Wright Way Services Recipe Script の admin/login.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-1662 | 2012-12-20 19:10 | 2009-05-18 | Show | GitHub Exploit DB Packet Storm |
| 226739 | 9.3 | 危険 | urusoft | - | URUWorks ViPlay3 におけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-1660 | 2012-12-20 19:10 | 2009-05-18 | Show | GitHub Exploit DB Packet Storm |
| 226740 | 7.5 | 危険 | realtywebware | - | Realty Webware Technologies Realty Web-Base の admin/admin.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-1658 | 2012-12-20 19:10 | 2009-05-18 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 14, 2026, 4 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 196491 | 7.5 |
HIGH
Network |
trendmicro | interscan_web_security_virtual_appliance | A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to send requests that appear to come from the localhost which could expose the product's admin … |
CWE-918
Server-Side Request Forgery (SSRF) |
CVE-2020-8464 | 2024-11-21 14:38 | 2020-12-18 | Show | GitHub Exploit DB Packet Storm |
| 196492 | 7.5 |
HIGH
Network |
trendmicro | interscan_web_security_virtual_appliance | A vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to bypass a global authorization check for anonymous users by manipulating request paths. |
CWE-22
Path Traversal |
CVE-2020-8463 | 2024-11-21 14:38 | 2020-12-18 | Show | GitHub Exploit DB Packet Storm |
| 196493 | 4.8 |
MEDIUM
Network |
trendmicro | interscan_web_security_virtual_appliance | A cross-site scripting (XSS) vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to tamper with the web interface of the product. |
CWE-79
Cross-site Scripting |
CVE-2020-8462 | 2024-11-21 14:38 | 2020-12-18 | Show | GitHub Exploit DB Packet Storm |
| 196494 | 8.8 |
HIGH
Network |
trendmicro | interscan_web_security_virtual_appliance | A CSRF protection bypass vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an attacker to get a victim's browser to send a specifically encoded request without… |
CWE-352
Origin Validation Error |
CVE-2020-8461 | 2024-11-21 14:38 | 2020-12-18 | Show | GitHub Exploit DB Packet Storm |
| 196495 | 7.5 |
HIGH
Network |
haxx fedoraproject debian netapp apple siemens oracle splunk |
libcurl fedora debian_linux clustered_data_ontap solidfire hci_management_node hci_bootstrap_os hci_storage_node_firmware mac_os_x macos simatic_tim_1531_irc_firmware | curl 7.41.0 through 7.73.0 is vulnerable to an improper check for certificate revocation due to insufficient verification of the OCSP response. |
CWE-295
Improper Certificate Validation |
CVE-2020-8286 | 2024-11-21 14:38 | 2020-12-15 | Show | GitHub Exploit DB Packet Storm |
| 196496 | 7.5 |
HIGH
Network |
haxx debian fedoraproject netapp apple oracle fujitsu siemens splunk |
libcurl debian_linux fedora clustered_data_ontap solidfire hci_management_node hci_bootstrap_os hci_storage_node_firmware mac_os_x macos peoplesoft_enterprise_peopletool… |
curl 7.21.0 to and including 7.73.0 is vulnerable to uncontrolled recursion due to a stack overflow issue in FTP wildcard match parsing. |
CWE-787 CWE-674 Out-of-bounds Write Uncontrolled Recursion |
CVE-2020-8285 | 2024-11-21 14:38 | 2020-12-15 | Show | GitHub Exploit DB Packet Storm |
| 196497 | 3.7 |
LOW
Network |
haxx fedoraproject debian netapp apple oracle fujitsu siemens splunk |
curl fedora debian_linux clustered_data_ontap solidfire hci_management_node hci_storage_node hci_bootstrap_os mac_os_x macos peoplesoft_enterprise_peopletools communi… |
A malicious server can use the FTP PASV response to trick curl 7.73.0 and earlier into connecting back to a given IP address and port, and this way potentially make curl extract information about ser… |
NVD-CWE-noinfo
|
CVE-2020-8284 | 2024-11-21 14:38 | 2020-12-15 | Show | GitHub Exploit DB Packet Storm |
| 196498 | 8.8 |
HIGH
Network |
citrix |
xendesktop xenapp virtual_apps_and_desktops |
An authorised user on a Windows host running Citrix Universal Print Server can perform arbitrary command execution as SYSTEM in CVAD versions before 2009, 1912 LTSR CU1 hotfixes CTX285870 and CTX2861… |
CWE-269
Improper Privilege Management |
CVE-2020-8283 | 2024-11-21 14:38 | 2020-12-15 | Show | GitHub Exploit DB Packet Storm |
| 196499 | 8.8 |
HIGH
Network |
ui |
edgemax_edgepower_24v_firmware edgemax_edgepower_54v_firmware |
A security issue was found in EdgePower 24V/54V firmware v1.7.0 and earlier where, due to missing CSRF protections, an attacker would have been able to perform unauthorized remote code execution. |
CWE-352
Origin Validation Error |
CVE-2020-8282 | 2024-11-21 14:38 | 2020-12-15 | Show | GitHub Exploit DB Packet Storm |
| 196500 | 7.5 |
HIGH
Network |
citrix | gateway_plug-in | Improper privilege management on services run by Citrix Gateway Plug-in for Windows, versions before and including 13.0-61.48 and 12.1-58.15, allows an attacker to modify arbitrary files. |
CWE-269
Improper Privilege Management |
CVE-2020-8258 | 2024-11-21 14:38 | 2020-12-15 | Show | GitHub Exploit DB Packet Storm |