|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 12, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 226921 | 7.5 | 危険 | WeBid Support | - | WeBid auction script の item.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-7119 | 2012-12-20 19:10 | 2009-08-28 | Show | GitHub Exploit DB Packet Storm |
| 226922 | 5 | 警告 | WeBid Support | - | WeBid auction script における SQL クエリログを取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-7118 | 2012-12-20 19:10 | 2009-08-28 | Show | GitHub Exploit DB Packet Storm |
| 226923 | 5 | 警告 | WeBid Support | - | WeBid auction script の eledicss.php における任意のカスケードスタイルシートファイル (CSS) を変更される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-7117 | 2012-12-20 19:10 | 2009-08-28 | Show | GitHub Exploit DB Packet Storm |
| 226924 | 7.5 | 危険 | WeBid Support | - | WeBid auction script の admin panel における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-7116 | 2012-12-20 19:10 | 2009-08-28 | Show | GitHub Exploit DB Packet Storm |
| 226925 | 4.3 | 警告 | phpcart | - | Carmosa phpCart におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-7108 | 2012-12-20 19:10 | 2009-08-28 | Show | GitHub Exploit DB Packet Storm |
| 226926 | 5 | 警告 | ソフォス | - | Microsoft Exchange 用の Sophos PureMessage におけるスキャン保護のリモート回避をされる脆弱性 |
CWE-Other
その他 |
CVE-2008-7106 | 2012-12-20 19:10 | 2009-08-27 | Show | GitHub Exploit DB Packet Storm |
| 226927 | 5 | 警告 | ソフォス | - | Microsoft Exchange 用の Sophos PureMessage におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-Other
その他 |
CVE-2008-7105 | 2012-12-20 19:10 | 2009-08-27 | Show | GitHub Exploit DB Packet Storm |
| 226928 | 5 | 警告 | ソフォス | - | Microsoft Exchange 用の PureMessage におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-Other
その他 |
CVE-2008-7104 | 2012-12-20 19:10 | 2009-08-27 | Show | GitHub Exploit DB Packet Storm |
| 226929 | 6.8 | 警告 | qsoft-inc | - | Qsoft K-Rate Premium の Manage Templates 機能における任意の PHP コードを実行される脆弱性 |
CWE-noinfo
情報不足 |
CVE-2008-7099 | 2012-12-20 19:10 | 2009-08-27 | Show | GitHub Exploit DB Packet Storm |
| 226930 | 4.3 | 警告 | qsoft-inc | - | Qsoft K-Rate Premium におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-7098 | 2012-12-20 19:10 | 2009-08-27 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 12, 2026, 5:06 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 210151 | 6.5 |
MEDIUM
Adjacent |
depstech | wifi_digital_microscope_3_firmware | DEPSTECH WiFi Digital Microscope 3 has a default SSID of Jetion_xxxxxxxx with a password of 12345678. |
CWE-1188
Insecure Default Initialization of Resource |
CVE-2020-12732 | 2024-11-21 14:00 | 2021-07-16 | Show | GitHub Exploit DB Packet Storm |
| 210152 | 7.5 |
HIGH
Network |
magicsmotion | flamingo_2_firmware | The MagicMotion Flamingo 2 application for Android stores data on an sdcard under com.vt.magicmotion/files/Pictures, whence it can be read by other applications. |
CWE-312
Cleartext Storage of Sensitive Information |
CVE-2020-12731 | 2024-11-21 14:00 | 2021-07-16 | Show | GitHub Exploit DB Packet Storm |
| 210153 | 5.3 |
MEDIUM
Adjacent |
magicsmotion | flamingo_2_firmware | MagicMotion Flamingo 2 lacks BLE encryption, enabling data sniffing and packet forgery. |
CWE-319
Cleartext Transmission of Sensitive Information |
CVE-2020-12730 | 2024-11-21 14:00 | 2021-07-16 | Show | GitHub Exploit DB Packet Storm |
| 210154 | 4.6 |
MEDIUM
Physics |
magicsmotion | flamingo_2_firmware | MagicMotion Flamingo 2 has a lack of access control for reading from device descriptors. |
NVD-CWE-Other
|
CVE-2020-12729 | 2024-11-21 14:00 | 2021-07-16 | Show | GitHub Exploit DB Packet Storm |
| 210155 | 5.5 |
MEDIUM
Local |
amd |
radeon_pro_software radeon_software |
A heap information leak/kernel pool address disclosure vulnerability in the AMD Graphics Driver for Windows 10 may lead to KASLR bypass. |
CWE-200
Information Exposure |
CVE-2020-12987 | 2024-11-21 14:00 | 2021-06-12 | Show | GitHub Exploit DB Packet Storm |
| 210156 | 7.8 |
HIGH
Local |
amd |
radeon_pro_software radeon_software |
An insufficient pointer validation vulnerability in the AMD Graphics Driver for Windows 10 may cause arbitrary code execution in the kernel, leading to escalation of privilege or denial of service. |
CWE-20
Improper Input Validation |
CVE-2020-12986 | 2024-11-21 14:00 | 2021-06-12 | Show | GitHub Exploit DB Packet Storm |
| 210157 | 7.5 |
HIGH
Network |
amd |
epyc_7001_firmware epyc_7002_firmware epyc_7003_firmware epyc_7232p_firmware epyc_7251_firmware epyc_7252_firmware epyc_7261_firmware epyc_7262_firmware epyc_7272_firmware … |
A potential denial of service (DoS) vulnerability exists in the integrated chipset that may allow a malicious attacker to hang the system when it is rebooted. |
NVD-CWE-noinfo
|
CVE-2020-12988 | 2024-11-21 14:00 | 2021-06-12 | Show | GitHub Exploit DB Packet Storm |
| 210158 | 7.8 |
HIGH
Local |
amd |
radeon_pro_software radeon_software |
An insufficient pointer validation vulnerability in the AMD Graphics Driver for Windows 10 may lead to escalation of privilege or denial of service. |
CWE-20
Improper Input Validation |
CVE-2020-12985 | 2024-11-21 14:00 | 2021-06-12 | Show | GitHub Exploit DB Packet Storm |
| 210159 | 7.8 |
HIGH
Local |
amd |
radeon_pro_software radeon_software |
An out of bounds write vulnerability in the AMD Graphics Driver for Windows 10 may lead to escalation of privileges or denial of service. |
CWE-787
Out-of-bounds Write |
CVE-2020-12983 | 2024-11-21 14:00 | 2021-06-12 | Show | GitHub Exploit DB Packet Storm |
| 210160 | 7.8 |
HIGH
Local |
amd |
radeon_pro_software radeon_software |
An invalid object pointer free vulnerability in the AMD Graphics Driver for Windows 10 may lead to escalation of privilege or denial of service. |
CWE-763
Release of Invalid Pointer or Reference |
CVE-2020-12982 | 2024-11-21 14:00 | 2021-06-12 | Show | GitHub Exploit DB Packet Storm |