|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 20, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 227371 | 6.8 | 警告 | Sitecore | - | Sitecore Staging Module の Staging Webservice における認証を回避される脆弱性 |
CWE-287
不適切な認証 |
CVE-2009-4367 | 2012-12-20 19:28 | 2009-12-21 | Show | GitHub Exploit DB Packet Storm |
| 227372 | 4.3 | 警告 | Scriptsez.net | - | ScriptsEz Ez Blog の index.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4366 | 2012-12-20 19:28 | 2009-12-21 | Show | GitHub Exploit DB Packet Storm |
| 227373 | 4.3 | 警告 | Scriptsez.net | - | ScriptsEz Ez Blog の admin.php におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2009-4365 | 2012-12-20 19:28 | 2009-12-21 | Show | GitHub Exploit DB Packet Storm |
| 227374 | 4.3 | 警告 | Scriptsez.net | - | ScriptsEz Ez Blog の index.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4364 | 2012-12-20 19:28 | 2009-12-21 | Show | GitHub Exploit DB Packet Storm |
| 227375 | 6.8 | 警告 | wscreator | - | WSCreator の ADMIN/loginaction.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4351 | 2012-12-20 19:28 | 2009-12-17 | Show | GitHub Exploit DB Packet Storm |
| 227376 | 6.8 | 警告 | PHP Web Scripts | - | Link Up Gold の administration/administrators.php におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2009-4349 | 2012-12-20 19:28 | 2009-12-17 | Show | GitHub Exploit DB Packet Storm |
| 227377 | 4.3 | 警告 | toni milovan | - | TYPO3 用の RTE エクステンションを伴う Frontend ニュース投稿ツールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4346 | 2012-12-20 19:28 | 2009-12-17 | Show | GitHub Exploit DB Packet Storm |
| 227378 | 4.3 | 警告 | tobias sommer | - | TYPO3 用の ZID Linkliste エクステンションにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4344 | 2012-12-20 19:28 | 2009-12-17 | Show | GitHub Exploit DB Packet Storm |
| 227379 | 7.5 | 危険 | stephan vits | - | TYPO3 用の mf_subscription エクステンションにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4339 | 2012-12-20 19:28 | 2009-12-17 | Show | GitHub Exploit DB Packet Storm |
| 227380 | 7.5 | 危険 | fr.simon rundell | - | TYPO3 用の pd_calendar エクステンションにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4337 | 2012-12-20 19:28 | 2009-12-17 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 20, 2026, 4:14 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 201971 | 7.5 |
HIGH
Network |
cisco |
firepower_threat_defense adaptive_security_appliance_software |
A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to … |
NVD-CWE-noinfo
|
CVE-2020-3259 | 2024-11-21 14:30 | 2020-05-7 | Show | GitHub Exploit DB Packet Storm |
| 201972 | 4.9 |
MEDIUM
Network |
cisco | hosted_collaboration_mediation_fulfillment | A vulnerability in the web-based management interface of Cisco Hosted Collaboration Mediation Fulfillment (HCM-F) Software could allow an authenticated, remote attacker to gain read access to informa… |
CWE-611
XXE |
CVE-2020-3256 | 2024-11-21 14:30 | 2020-05-7 | Show | GitHub Exploit DB Packet Storm |
| 201973 | 7.5 |
HIGH
Network |
cisco |
firepower_threat_defense asa_5505_firmware asa_5510_firmware asa_5512-x_firmware asa_5515-x_firmware asa_5520_firmware asa_5525-x_firmware asa_5540_firmware asa_5545-x_firmwar… |
A vulnerability in the packet processing functionality of Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on… |
CWE-400
Uncontrolled Resource Consumption |
CVE-2020-3255 | 2024-11-21 14:30 | 2020-05-7 | Show | GitHub Exploit DB Packet Storm |
| 201974 | 7.5 |
HIGH
Network |
cisco |
firepower_threat_defense asa_5505_firmware asa_5510_firmware asa_5512-x_firmware asa_5515-x_firmware asa_5520_firmware asa_5525-x_firmware asa_5540_firmware asa_5545-x_firmwar… |
Multiple vulnerabilities in the Media Gateway Control Protocol (MGCP) inspection feature of Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software could allow an… |
CWE-400
Uncontrolled Resource Consumption |
CVE-2020-3254 | 2024-11-21 14:30 | 2020-05-7 | Show | GitHub Exploit DB Packet Storm |
| 201975 | 6.7 |
MEDIUM
Local |
cisco | firepower_threat_defense | A vulnerability in the support tunnel feature of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to access the shell of an affected device even though exper… |
NVD-CWE-Other
|
CVE-2020-3253 | 2024-11-21 14:30 | 2020-05-7 | Show | GitHub Exploit DB Packet Storm |
| 201976 | 4.3 |
MEDIUM
Network |
cisco | umbrella | A vulnerability in the web server of Cisco Umbrella could allow an unauthenticated, remote attacker to perform a carriage return line feed (CRLF) injection attack against a user of an affected servic… |
CWE-74
Injection |
CVE-2020-3246 | 2024-11-21 14:30 | 2020-05-7 | Show | GitHub Exploit DB Packet Storm |
| 201977 | 8.6 |
HIGH
Network |
cisco |
firepower_threat_defense asa_5505_firmware asa_5510_firmware asa_5512-x_firmware asa_5515-x_firmware asa_5520_firmware asa_5525-x_firmware asa_5540_firmware asa_5545-x_firmwar… |
A vulnerability in the Secure Sockets Layer (SSL)/Transport Layer Security (TLS) handler of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could al… |
CWE-400
Uncontrolled Resource Consumption |
CVE-2020-3196 | 2024-11-21 14:30 | 2020-05-7 | Show | GitHub Exploit DB Packet Storm |
| 201978 | 7.5 |
HIGH
Network |
cisco |
firepower_threat_defense asa_5505_firmware asa_5510_firmware asa_5512-x_firmware asa_5515-x_firmware asa_5520_firmware asa_5525-x_firmware asa_5540_firmware asa_5545-x_firmwar… |
A vulnerability in the Open Shortest Path First (OSPF) implementation in Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthentica… |
CWE-401
Missing Release of Memory after Effective Lifetime |
CVE-2020-3195 | 2024-11-21 14:30 | 2020-05-7 | Show | GitHub Exploit DB Packet Storm |
| 201979 | 8.6 |
HIGH
Network |
cisco |
firepower_threat_defense asa_5505_firmware asa_5510_firmware asa_5512-x_firmware asa_5515-x_firmware asa_5520_firmware asa_5525-x_firmware asa_5540_firmware asa_5545-x_firmwar… |
A vulnerability in DNS over IPv6 packet processing for Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to … |
CWE-20
Improper Input Validation |
CVE-2020-3191 | 2024-11-21 14:30 | 2020-05-7 | Show | GitHub Exploit DB Packet Storm |
| 201980 | 8.6 |
HIGH
Network |
cisco |
firepower_threat_defense asa_5505_firmware asa_5510_firmware asa_5512-x_firmware asa_5515-x_firmware asa_5520_firmware asa_5525-x_firmware asa_5540_firmware asa_5545-x_firmwar… |
A vulnerability in the VPN System Logging functionality for Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause a memory leak that can deplete syste… |
CWE-401
Missing Release of Memory after Effective Lifetime |
CVE-2020-3189 | 2024-11-21 14:30 | 2020-05-7 | Show | GitHub Exploit DB Packet Storm |