|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 10, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 227761 | 9.3 | 危険 | watchfire | - | WatchFire AppScan の特定の ActiveX コントロールにおける絶対パストラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2008-2015 | 2012-12-20 18:52 | 2008-04-29 | Show | GitHub Exploit DB Packet Storm |
| 227762 | 6.8 | 警告 | pnflashgames | - | PostNuke 用の pnFlashGames モジュールの index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-2013 | 2012-12-20 18:52 | 2008-04-29 | Show | GitHub Exploit DB Packet Storm |
| 227763 | 7.5 | 危険 | postnuke software foundation | - | PostNuke 用の PostSchedule モジュールにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-2012 | 2012-12-20 18:52 | 2008-04-29 | Show | GitHub Exploit DB Packet Storm |
| 227764 | 7.5 | 危険 | サン・マイクロシステムズ | - | Sun Java System Directory Proxy Server におけるサーバに対するアクセス制限を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-1995 | 2012-12-20 18:52 | 2008-04-25 | Show | GitHub Exploit DB Packet Storm |
| 227765 | 4.3 | 警告 | pixel motion | - | Blog Pixel Motion の liste_article.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-1986 | 2012-12-20 18:52 | 2008-04-27 | Show | GitHub Exploit DB Packet Storm |
| 227766 | 8.5 | 危険 | サン・マイクロシステムズ | - | Sun Ray Kiosk Mode におけるルートの権限を取得される脆弱性 |
CWE-noinfo
情報不足 |
CVE-2008-2112 | 2012-12-20 18:52 | 2008-05-5 | Show | GitHub Exploit DB Packet Storm |
| 227767 | 9.3 | 危険 | Yahoo! | - | Yahoo! Assistant の ActiveX コントロールにおける任意のコードを実行される脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2008-2111 | 2012-12-20 18:52 | 2008-05-7 | Show | GitHub Exploit DB Packet Storm |
| 227768 | 7.5 | 危険 | qto | - | QTOFileManager の qtofm.php における任意の PHP コードをアップロードされる脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2008-2110 | 2012-12-20 18:52 | 2008-05-7 | Show | GitHub Exploit DB Packet Storm |
| 227769 | 7.5 | 危険 | phpforge | - | PHP Forge の admin/news.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-2088 | 2012-12-20 18:52 | 2008-05-6 | Show | GitHub Exploit DB Packet Storm |
| 227770 | 6.8 | 警告 | softbiz | - | Softbiz Web Host Directory Script の search_result.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-2087 | 2012-12-20 18:52 | 2008-05-6 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 11, 2026, 4:09 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 196211 | 8.6 |
HIGH
Local |
schneider-electric |
unity_pro ecostruxure_control_expert |
A CWE-123: Write-what-where Condition vulnerability exists in EcoStruxure™ Control Expert (all versions) and Unity Pro (former name of EcoStruxure™ Control Expert) (all versions), that could cause a … | - | CVE-2020-7560 | 2024-11-21 14:37 | 2020-12-11 | Show | GitHub Exploit DB Packet Storm |
| 196212 | 5.3 |
MEDIUM
Network |
schneider-electric |
modicon_m340_bmxp341000_firmware modicon_m340_bmxp342000_firmware modicon_m340_bmxp3420102_firmware modicon_m340_bmxp3420102cl_firmware modicon_m340_bmxp342020_firmware modicon_m340_bm… |
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in the Web Server on Modicon M340, Legacy Offers Modicon Quantum and Modicon Premium and associated Communication … | - | CVE-2020-7549 | 2024-11-21 14:37 | 2020-12-11 | Show | GitHub Exploit DB Packet Storm |
| 196213 | 7.5 |
HIGH
Network |
schneider-electric |
modicon_m580_bmep584040_firmware modicon_m580_bmep582040_firmware modicon_m580_bmep586040_firmware modicon_m580_bmep585040_firmware modicon_m580_bmep582020_firmware modicon_m580_bmep58… |
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Legacy Controllers Modicon Quantum & Modicon Premium (see security notifications fo… | - | CVE-2020-7543 | 2024-11-21 14:37 | 2020-12-11 | Show | GitHub Exploit DB Packet Storm |
| 196214 | 7.5 |
HIGH
Network |
schneider-electric |
modicon_m580_bmep584040_firmware modicon_m580_bmep582040_firmware modicon_m580_bmep586040_firmware modicon_m580_bmep585040_firmware modicon_m580_bmep582020_firmware modicon_m580_bmep58… |
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Legacy Controllers Modicon Quantum & Modicon Premium (see security notifications fo… | - | CVE-2020-7542 | 2024-11-21 14:37 | 2020-12-11 | Show | GitHub Exploit DB Packet Storm |
| 196215 | 5.3 |
MEDIUM
Network |
schneider-electric |
modicon_m340_bmxp341000_firmware modicon_m340_bmxp342000_firmware modicon_m340_bmxp3420102_firmware modicon_m340_bmxp3420102cl_firmware modicon_m340_bmxp342020_firmware modicon_m340_bm… |
A CWE-425: Direct Request ('Forced Browsing') vulnerability exists in the Web Server on Modicon M340, Legacy Offers Modicon Quantum and Modicon Premium and associated Communication Modules (see secur… | - | CVE-2020-7541 | 2024-11-21 14:37 | 2020-12-11 | Show | GitHub Exploit DB Packet Storm |
| 196216 | 9.8 |
CRITICAL
Network |
schneider-electric |
modicon_m340_bmxp341000_firmware modicon_m340_bmxp342000_firmware modicon_m340_bmxp3420102_firmware modicon_m340_bmxp3420102cl_firmware modicon_m340_bmxp342020_firmware modicon_m340_bm… |
A CWE-306: Missing Authentication for Critical Function vulnerability exists in the Web Server on Modicon M340, Legacy Offers Modicon Quantum and Modicon Premium and associated Communication Modules … | - | CVE-2020-7540 | 2024-11-21 14:37 | 2020-12-11 | Show | GitHub Exploit DB Packet Storm |
| 196217 | 7.5 |
HIGH
Network |
schneider-electric |
modicon_m340_bmxp341000_firmware modicon_m340_bmxp342000_firmware modicon_m340_bmxp3420102_firmware modicon_m340_bmxp3420102cl_firmware modicon_m340_bmxp342020_firmware modicon_m340_bm… |
A CWE-754 Improper Check for Unusual or Exceptional Conditions vulnerability exists in the Web Server on Modicon M340, Legacy Offers Modicon Quantum and Modicon Premium and associated Communication M… | - | CVE-2020-7539 | 2024-11-21 14:37 | 2020-12-11 | Show | GitHub Exploit DB Packet Storm |
| 196218 | 7.5 |
HIGH
Network |
schneider-electric |
modicon_m580_bmep584040_firmware modicon_m580_bmep582040_firmware modicon_m580_bmep586040_firmware modicon_m580_bmep585040_firmware modicon_m580_bmep582020_firmware modicon_m580_bmep58… |
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Legacy Controllers Modicon Quantum & Modicon Premium (see security notifications fo… | - | CVE-2020-7537 | 2024-11-21 14:37 | 2020-12-11 | Show | GitHub Exploit DB Packet Storm |
| 196219 | 7.5 |
HIGH
Network |
schneider-electric |
modicon_m340_bmxp341000_firmware modicon_m340_bmxp342000_firmware modicon_m340_bmxp3420102_firmware modicon_m340_bmxp3420102cl_firmware modicon_m340_bmxp342020_firmware modicon_m340_bm… |
A CWE-754:Improper Check for Unusual or Exceptional Conditions vulnerability exists in Modicon M340 CPUs (BMXP34* versions prior to V3.30) Modicon M340 Communication Ethernet modules (BMXNOE0100 (H) … | - | CVE-2020-7536 | 2024-11-21 14:37 | 2020-12-11 | Show | GitHub Exploit DB Packet Storm |
| 196220 | 7.5 |
HIGH
Network |
schneider-electric |
modicon_m340_bmxp341000_firmware modicon_m340_bmxp342000_firmware modicon_m340_bmxp3420102_firmware modicon_m340_bmxp3420102cl_firmware modicon_m340_bmxp342020_firmware modicon_m340_bm… |
A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal' Vulnerability Type) vulnerability exists in the Web Server on Modicon M340, Legacy Offers Modicon Quantum and M… | - | CVE-2020-7535 | 2024-11-21 14:37 | 2020-12-11 | Show | GitHub Exploit DB Packet Storm |