|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 8, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 227171 | 7.5 | 危険 | TYPO3 Association | - | TYPO3 用の Frontend Users View エクステンションにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-4656 | 2012-12-20 18:52 | 2008-10-21 | Show | GitHub Exploit DB Packet Storm |
| 227172 | 7.5 | 危険 | TYPO3 Association | - | TYPO3 用の Simple survey エクステンションにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-4655 | 2012-12-20 18:52 | 2008-10-21 | Show | GitHub Exploit DB Packet Storm |
| 227173 | 9.3 | 危険 | VideoLAN | - | VLC Media Player の Ty demux プラグインにおけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2008-4654 | 2012-12-20 18:52 | 2008-10-21 | Show | GitHub Exploit DB Packet Storm |
| 227174 | 7.5 | 危険 | XOOPS | - | XOOPS 用の Makale モジュールにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-4653 | 2012-12-20 18:52 | 2008-10-21 | Show | GitHub Exploit DB Packet Storm |
| 227175 | 7.5 | 危険 | sweetcms | - | sweetCMS の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-4647 | 2012-12-20 18:52 | 2008-10-21 | Show | GitHub Exploit DB Packet Storm |
| 227176 | 2.1 | 注意 | ウェブセンス | - | Websense Enterprise の Websense Reporter Module におけるデータベースへの権限を取得される脆弱性 |
CWE-255
証明書・パスワード管理 |
CVE-2008-4646 | 2012-12-20 18:52 | 2008-10-21 | Show | GitHub Exploit DB Packet Storm |
| 227177 | 9 | 危険 | phpwebgallery | - | PhpWebGallery の plugins/event_tracer/event_list.php における任意の PHP コードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2008-4645 | 2012-12-20 18:52 | 2008-10-21 | Show | GitHub Exploit DB Packet Storm |
| 227178 | 10 | 危険 | Matthias Wandel | - | Matthias Wandel jhead の jhead.c における任意のコマンドを実行される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2008-4641 | 2012-12-20 18:52 | 2008-10-21 | Show | GitHub Exploit DB Packet Storm |
| 227179 | 3.6 | 注意 | Matthias Wandel | - | Matthias Wandel jhead の jhead.c における任意のファイルを削除される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2008-4640 | 2012-12-20 18:52 | 2008-10-21 | Show | GitHub Exploit DB Packet Storm |
| 227180 | 4.6 | 警告 | Matthias Wandel | - | Matthias Wandel jhead の jhead.c における任意のファイルを上書きされる脆弱性 |
CWE-59
リンク解釈の問題 |
CVE-2008-4639 | 2012-12-20 18:52 | 2008-10-21 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 8, 2026, 4:54 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 210341 | 5.5 |
MEDIUM
Local |
openexr fedoraproject canonical opensuse debian apple |
openexr fedora ubuntu_linux leap debian_linux mac_os_x tvos iphone_os icloud itunes watchos ipados |
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read and write in DwaCompressor::uncompress in ImfDwaCompressor.cpp when handling the UNKNOWN compression case. |
CWE-125 CWE-787 Out-of-bounds Read Out-of-bounds Write |
CVE-2020-11762 | 2024-11-21 13:58 | 2020-04-15 | Show | GitHub Exploit DB Packet Storm |
| 210342 | 5.5 |
MEDIUM
Local |
openexr fedoraproject canonical debian apple |
openexr fedora ubuntu_linux debian_linux mac_os_x tvos iphone_os icloud itunes watchos ipados |
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read during Huffman uncompression, as demonstrated by FastHufDecoder::refill in ImfFastHuf.cpp. |
CWE-125
Out-of-bounds Read |
CVE-2020-11761 | 2024-11-21 13:58 | 2020-04-15 | Show | GitHub Exploit DB Packet Storm |
| 210343 | 5.5 |
MEDIUM
Local |
openexr fedoraproject canonical opensuse debian apple |
openexr fedora ubuntu_linux leap debian_linux mac_os_x tvos iphone_os icloud itunes watchos ipados |
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read during RLE uncompression in rleUncompress in ImfRle.cpp. |
CWE-125
Out-of-bounds Read |
CVE-2020-11760 | 2024-11-21 13:58 | 2020-04-15 | Show | GitHub Exploit DB Packet Storm |
| 210344 | 5.5 |
MEDIUM
Local |
openexr fedoraproject canonical debian apple |
openexr fedora ubuntu_linux debian_linux tvos iphone_os icloud itunes watchos ipados mac_os_x |
An issue was discovered in OpenEXR before 2.4.1. Because of integer overflows in CompositeDeepScanLine::Data::handleDeepFrameBuffer and readSampleCountForLineBlock, an attacker can write to an out-of… |
CWE-190
Integer Overflow or Wraparound |
CVE-2020-11759 | 2024-11-21 13:58 | 2020-04-15 | Show | GitHub Exploit DB Packet Storm |
| 210345 | 5.5 |
MEDIUM
Local |
openexr fedoraproject canonical opensuse debian apple |
openexr fedora ubuntu_linux leap debian_linux mac_os_x tvos iphone_os icloud itunes watchos ipados |
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read in ImfOptimizedPixelReading.h. |
CWE-125
Out-of-bounds Read |
CVE-2020-11758 | 2024-11-21 13:58 | 2020-04-15 | Show | GitHub Exploit DB Packet Storm |
| 210346 | 5.5 |
MEDIUM
Local |
cellebrite | ufed_firmware | Cellebrite UFED 5.0 through 7.29 uses four hardcoded RSA private keys to authenticate to the ADB daemon on target devices. Extracted keys can be used to place evidence onto target devices when perfor… |
CWE-798
Use of Hard-coded Credentials |
CVE-2020-11723 | 2024-11-21 13:58 | 2020-04-15 | Show | GitHub Exploit DB Packet Storm |
| 210347 | 5.5 |
MEDIUM
Local |
xen debian fedoraproject opensuse |
xen debian_linux fedora leap |
An issue was discovered in xenoprof in Xen through 4.13.x, allowing guest OS users (without active profiling) to obtain sensitive information about other guests. Unprivileged guests can request to ma… |
CWE-212
Improper Removal of Sensitive Information Before Storage or Transfer |
CVE-2020-11740 | 2024-11-21 13:58 | 2020-04-14 | Show | GitHub Exploit DB Packet Storm |
| 210348 | 7.5 |
HIGH
Network |
snapcreek | duplicator | The Snap Creek Duplicator plugin before 1.3.28 for WordPress (and Duplicator Pro before 3.8.7.1) allows Directory Traversal via ../ in the file parameter to duplicator_download or duplicator_init. |
CWE-22
Path Traversal |
CVE-2020-11738 | 2024-11-21 13:58 | 2020-04-14 | Show | GitHub Exploit DB Packet Storm |
| 210349 | 3.9 |
LOW
Local |
gnome debian canonical |
file-roller debian_linux ubuntu_linux |
fr-archive-libarchive.c in GNOME file-roller through 3.36.1 allows Directory Traversal during extraction because it lacks a check of whether a file's parent is a symlink to a directory outside of the… |
CWE-22 CWE-59 Path Traversal Link Following |
CVE-2020-11736 | 2024-11-21 13:58 | 2020-04-14 | Show | GitHub Exploit DB Packet Storm |
| 210350 | 6.1 |
MEDIUM
Network |
cybersolutions | cybermail | cgi-bin/go in CyberSolutions CyberMail 5 or later allows XSS via the ACTION parameter. |
CWE-79
Cross-site Scripting |
CVE-2020-11734 | 2024-11-21 13:58 | 2020-04-14 | Show | GitHub Exploit DB Packet Storm |