|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 31, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 228041 | 6.5 | 警告 | tufat | - | MyBackup の index.php における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-4977 | 2012-12-20 19:28 | 2010-08-25 | Show | GitHub Exploit DB Packet Storm |
| 228042 | 7.5 | 危険 | sweetphp | - | TotalCalendar の box_display.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-4974 | 2012-12-20 19:28 | 2010-07-28 | Show | GitHub Exploit DB Packet Storm |
| 228043 | 7.5 | 危険 | sweetphp | - | TotalCalendar の rss.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4973 | 2012-12-20 19:28 | 2010-07-28 | Show | GitHub Exploit DB Packet Storm |
| 228044 | 7.5 | 危険 | vincent tietz | - | TYPO3 用の AJAX Chat エクステンションにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4971 | 2012-12-20 19:28 | 2010-07-28 | Show | GitHub Exploit DB Packet Storm |
| 228045 | 7.5 | 危険 | typo3-macher | - | TYPO3 用の t3m_affiliate エクステンションにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4970 | 2012-12-20 19:28 | 2010-07-28 | Show | GitHub Exploit DB Packet Storm |
| 228046 | 7.5 | 危険 | TYPO3 Association | - | TYPO3 用の SBbanner エクステンションにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4969 | 2012-12-20 19:28 | 2010-07-28 | Show | GitHub Exploit DB Packet Storm |
| 228047 | 7.5 | 危険 | thomas waggershauser | - | TYPO3 用の AIRware Lexicon エクステンションにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4965 | 2012-12-20 19:28 | 2010-07-28 | Show | GitHub Exploit DB Packet Storm |
| 228048 | 5 | 警告 | ViewVC | - | ViewVC における非公開 root 名を発見される脆弱性 |
CWE-200
情報漏えい |
CVE-2010-0004 | 2012-12-20 19:28 | 2009-12-2 | Show | GitHub Exploit DB Packet Storm |
| 228049 | 4.3 | 警告 | Urs Wolfer | - | kwebkitpart の webkitpart.cpp におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4976 | 2012-12-20 19:28 | 2009-12-5 | Show | GitHub Exploit DB Packet Storm |
| 228050 | 3.5 | 注意 | TYPO3 Association | - | TYPO3 用の Commerce エクステンションにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4963 | 2012-12-20 19:28 | 2010-07-28 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 31, 2026, 4:16 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 208151 | 4.8 |
MEDIUM
Network |
netgear |
d7800_firmware r7500v2_firmware r7800_firmware r8900_firmware rax120_firmware rbk50_firmware rbr50_firmware rbs50_firmware xr500_firmware xr700_firmware r9000_firmware |
Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 before 1.0.2.68, R8900 before 1.0.4.28, R9000 before 1.0.4.28, RAX120 before 1.0… |
CWE-79
Cross-site Scripting |
CVE-2020-26915 | 2024-11-21 14:20 | 2020-10-9 | Show | GitHub Exploit DB Packet Storm |
| 208152 | 7.1 |
HIGH
Adjacent |
netgear |
d6200_firmware d7000_firmware jr6150_firmware r6020_firmware r6050_firmware r6080_firmware r6120_firmware r6220_firmware r6260_firmware r6700v2_firmware r6800_firmware | Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D6200 before 1.1.00.38, D7000 before 1.0.1.78, JR6150 before 1.0.1.24, R6020 before 1.0.0.42, R6050 be… |
CWE-77
Command Injection |
CVE-2020-26914 | 2024-11-21 14:20 | 2020-10-9 | Show | GitHub Exploit DB Packet Storm |
| 208153 | 6.8 |
MEDIUM
Adjacent |
netgear |
d6100_firmware r7800_firmware r8900_firmware r9000_firmware rbk20_firmware rbr20_firmware rbs20_firmware rbk50_firmware rbr50_firmware rbs50_firmware rbk40_firmware r… |
Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects D6100 before 1.0.0.63, R7800 before 1.0.2.60, R8900 before 1.0.4.26, R9000 before 1.0.4.26… |
CWE-787
Out-of-bounds Write |
CVE-2020-26913 | 2024-11-21 14:20 | 2020-10-9 | Show | GitHub Exploit DB Packet Storm |
| 208154 | 8.8 |
HIGH
Network |
netgear |
d6200_firmware d7000_firmware jr6150_firmware r6020_firmware r6050_firmware r6080_firmware r6120_firmware r6220_firmware r6260_firmware r6700v2_firmware r6800_firmware | Certain NETGEAR devices are affected by CSRF. This affects D6200 before 1.1.00.38, D7000 before 1.0.1.78, JR6150 before 1.0.1.24, R6020 before 1.0.0.42, R6050 before 1.0.1.24, R6080 before 1.0.0.42, … |
CWE-352
Origin Validation Error |
CVE-2020-26912 | 2024-11-21 14:20 | 2020-10-9 | Show | GitHub Exploit DB Packet Storm |
| 208155 | 8.8 |
HIGH
Adjacent |
netgear |
cbr40_firmware rbk752_firmware rbr750_firmware rbs750_firmware rbk852_firmware rbr850_firmware rbs850_firmware |
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects CBR40 before 2.5.0.10, RBK752 before 3.2.15.25, RBR750 before 3.2.15.25, RBS750 before 3.2.15.25, RBK852… |
NVD-CWE-noinfo
|
CVE-2020-26906 | 2024-11-21 14:20 | 2020-10-9 | Show | GitHub Exploit DB Packet Storm |
| 208156 | 8.8 |
HIGH
Adjacent |
netgear |
cbr40_firmware rbk752_firmware rbr750_firmware rbs750_firmware rbk852_firmware rbr850_firmware rbs850_firmware |
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects CBR40 before 2.5.0.10, RBK752 before 3.2.15.25, RBR750 before 3.2.15.25, RBS750 before 3.2.15.25, RBK852… |
NVD-CWE-noinfo
|
CVE-2020-26905 | 2024-11-21 14:20 | 2020-10-9 | Show | GitHub Exploit DB Packet Storm |
| 208157 | 8.8 |
HIGH
Adjacent |
netgear |
cbr40_firmware rbk752_firmware rbr750_firmware rbs750_firmware rbk852_firmware rbr850_firmware rbs850_firmware |
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects CBR40 before 2.5.0.10, RBK752 before 3.2.15.25, RBR750 before 3.2.15.25, RBS750 before 3.2.15.25, RBK852… |
NVD-CWE-noinfo
|
CVE-2020-26904 | 2024-11-21 14:20 | 2020-10-9 | Show | GitHub Exploit DB Packet Storm |
| 208158 | 8.8 |
HIGH
Adjacent |
netgear |
d6200_firmware d7000_firmware jr6150_firmware r6020_firmware r6050_firmware r6080_firmware r6120_firmware r6220_firmware r6260_firmware r6700v2_firmware r6800_firmware | Certain NETGEAR devices are affected by lack of access control at the function level. This affects D6200 before 1.1.00.38, D7000 before 1.0.1.78, JR6150 before 1.0.1.24, R6020 before 1.0.0.42, R6050 … |
NVD-CWE-Other
|
CVE-2020-26911 | 2024-11-21 14:20 | 2020-10-9 | Show | GitHub Exploit DB Packet Storm |
| 208159 | 9.8 |
CRITICAL
Network |
netgear |
d6200_firmware d7000_firmware pr2000_firmware r6020_firmware r6050_firmware r6080_firmware r6120_firmware r6220_firmware r6260_firmware r6700v2_firmware r6800_firmware | Certain NETGEAR devices are affected by authentication bypass. This affects D6200 before 1.1.00.36, D7000 before 1.0.1.74, PR2000 before 1.0.0.30, R6020 before 1.0.0.42, R6050 before 1.0.1.22, JR6150… |
NVD-CWE-Other
|
CVE-2020-26908 | 2024-11-21 14:20 | 2020-10-9 | Show | GitHub Exploit DB Packet Storm |
| 208160 | 8.8 |
HIGH
Adjacent |
netgear |
cbr40_firmware rbk752_firmware rbr750_firmware rbs750_firmware rbk852_firmware rbr850_firmware rbs850_firmware |
Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects CBR40 before 2.5.0.10, RBK752 before 3.2.15.25, RBR750 before 3.2.15.25, RBS750 before 3.2.15.25, RBK852… |
NVD-CWE-noinfo
|
CVE-2020-26903 | 2024-11-21 14:20 | 2020-10-9 | Show | GitHub Exploit DB Packet Storm |