|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 8, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 227151 | 7.5 | 危険 | sylvain pasquet | - | BbZL.PhP における認証を回避される脆弱性 |
CWE-287
不適切な認証 |
CVE-2008-4708 | 2012-12-20 18:52 | 2008-10-23 | Show | GitHub Exploit DB Packet Storm |
| 227152 | 5 | 警告 | sylvain pasquet | - | BbZL.PhP の index.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2008-4707 | 2012-12-20 18:52 | 2008-10-23 | Show | GitHub Exploit DB Packet Storm |
| 227153 | 7.5 | 危険 | vBulletin Solutions, Inc. | - | VBGooglemap Hotspot Edition モジュールなどにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-4706 | 2012-12-20 18:52 | 2008-10-23 | Show | GitHub Exploit DB Packet Storm |
| 227154 | 7.5 | 危険 | phponlinedatingsoftware | - | php Online Dating Software MyPHPDating の success_story.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-4705 | 2012-12-20 18:52 | 2008-10-23 | Show | GitHub Exploit DB Packet Storm |
| 227155 | 7.5 | 危険 | phpwebgallery | - | PhpWebGallery におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2008-4702 | 2012-12-20 18:52 | 2008-10-22 | Show | GitHub Exploit DB Packet Storm |
| 227156 | 9.3 | 危険 | VideoLAN | - | VideoLAN VLC Media Player の TY demux プラグインにおける整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2008-4686 | 2012-12-20 18:52 | 2008-10-18 | Show | GitHub Exploit DB Packet Storm |
| 227157 | 4.3 | 警告 | Wireshark | - | Wireshark の packet-frame におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2008-4684 | 2012-12-20 18:52 | 2008-05-16 | Show | GitHub Exploit DB Packet Storm |
| 227158 | 5 | 警告 | Wireshark | - | Wireshark の wtap.c におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2008-4682 | 2012-12-20 18:52 | 2008-10-1 | Show | GitHub Exploit DB Packet Storm |
| 227159 | 4.3 | 警告 | Wireshark | - | Wireshark の Bluetooth RFCOMM 解析子におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-20 CWE-399 |
CVE-2008-4681 | 2012-12-20 18:52 | 2008-10-20 | Show | GitHub Exploit DB Packet Storm |
| 227160 | 4.3 | 警告 | Wireshark | - | Wireshark の USB 解析子におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2008-4680 | 2012-12-20 18:52 | 2008-10-1 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 8, 2026, 4:54 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 222981 | 8.1 |
HIGH
Network |
pw3270_project | pw3270 | There is Missing SSL Certificate Validation in the pw3270 terminal emulator before version 5.1. |
CWE-295
Improper Certificate Validation |
CVE-2019-15525 | 2024-11-21 13:28 | 2019-08-24 | Show | GitHub Exploit DB Packet Storm |
| 222982 | 5.3 |
MEDIUM
Network |
comelz | quark | comelz Quark before 2019-03-26 allows directory traversal to locations outside of the project directory. |
CWE-22
Path Traversal |
CVE-2019-15520 | 2024-11-21 13:28 | 2019-08-24 | Show | GitHub Exploit DB Packet Storm |
| 222983 | 9.8 |
CRITICAL
Network |
power-response_project | power-response | Power-Response before 2019-02-02 allows directory traversal (up to the application's main directory) via a plugin. |
CWE-22
Path Traversal |
CVE-2019-15519 | 2024-11-21 13:28 | 2019-08-24 | Show | GitHub Exploit DB Packet Storm |
| 222984 | 5.3 |
MEDIUM
Network |
swoole | swoole | Swoole before 4.2.13 allows directory traversal in swPort_http_static_handler. |
CWE-22
Path Traversal |
CVE-2019-15518 | 2024-11-21 13:28 | 2019-08-24 | Show | GitHub Exploit DB Packet Storm |
| 222985 | 5.5 |
MEDIUM
Local |
jc21 | nginx_proxy_manager | jc21 Nginx Proxy Manager before 2.0.13 allows %2e%2e%2f directory traversal. |
CWE-22
Path Traversal |
CVE-2019-15517 | 2024-11-21 13:28 | 2019-08-24 | Show | GitHub Exploit DB Packet Storm |
| 222986 | 7.5 |
HIGH
Network |
cuberite | cuberite | Cuberite before 2019-06-11 allows webadmin directory traversal via ....// because the protection mechanism simply removes one ../ substring. |
CWE-22
Path Traversal |
CVE-2019-15516 | 2024-11-21 13:28 | 2019-08-24 | Show | GitHub Exploit DB Packet Storm |
| 222987 | 5.3 |
MEDIUM
Network |
telegram | telegram | The Privacy > Phone Number feature in the Telegram app 5.10 for Android and iOS provides an incorrect indication that the access level is Nobody, because attackers can find these numbers via the Grou… |
NVD-CWE-noinfo
|
CVE-2019-15514 | 2024-11-21 13:28 | 2019-08-23 | Show | GitHub Exploit DB Packet Storm |
| 222988 | 9.8 |
CRITICAL
Network |
it-novum | openitcockpit | openITCOCKPIT before 3.7.1 allows SSRF, aka RVID 5-445b21. |
CWE-918
Server-Side Request Forgery (SSRF) |
CVE-2019-15494 | 2024-11-21 13:28 | 2019-08-23 | Show | GitHub Exploit DB Packet Storm |
| 222989 | 7.5 |
HIGH
Network |
it-novum | openitcockpit | openITCOCKPIT before 3.7.1 allows deletion of files, aka RVID 4-445b21. |
NVD-CWE-noinfo
|
CVE-2019-15493 | 2024-11-21 13:28 | 2019-08-23 | Show | GitHub Exploit DB Packet Storm |
| 222990 | 6.1 |
MEDIUM
Network |
it-novum | openitcockpit | openITCOCKPIT before 3.7.1 has reflected XSS, aka RVID 3-445b21. |
CWE-79
Cross-site Scripting |
CVE-2019-15492 | 2024-11-21 13:28 | 2019-08-23 | Show | GitHub Exploit DB Packet Storm |