|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 11, 2026, 6:01 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 228071 | 7.5 | 危険 | TYPO3 Association | - | TYPO3 用の Statistics エクステンションにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-2451 | 2012-12-20 18:52 | 2008-05-27 | Show | GitHub Exploit DB Packet Storm |
| 228072 | 4.3 | 警告 | TYPO3 Association | - | TYPO3 用の Statistics エクステンションにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-2450 | 2012-12-20 18:52 | 2008-05-27 | Show | GitHub Exploit DB Packet Storm |
| 228073 | 7.5 | 危険 | wgcc | - | WGCC における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-2446 | 2012-12-20 18:52 | 2008-05-27 | Show | GitHub Exploit DB Packet Storm |
| 228074 | 4.3 | 警告 | wgcc | - | WGCC の profile.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-2445 | 2012-12-20 18:52 | 2008-05-27 | Show | GitHub Exploit DB Packet Storm |
| 228075 | 7.5 | 危険 | therealestatescript | - | The Real Estate Script の dpage.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-2443 | 2012-12-20 18:52 | 2008-05-27 | Show | GitHub Exploit DB Packet Storm |
| 228076 | 5 | 警告 | トレンドマイクロ | - | Trend Micro OfficeScan および Worry-Free Business Security クライアントの OfficeScanNT Listener サービスにおけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2008-2439 | 2012-12-20 18:52 | 2008-09-26 | Show | GitHub Exploit DB Packet Storm |
| 228077 | 10 | 危険 | トレンドマイクロ | - | Trend Micro OfficeScan および Client Server Messaging Security の cgiRecvFile.exe におけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2008-2437 | 2012-12-20 18:52 | 2008-09-12 | Show | GitHub Exploit DB Packet Storm |
| 228078 | 9.3 | 危険 | トレンドマイクロ | - | Housecall_ActiveX.dll の Trend Micro HouseCall ActiveX コントロールにおける任意のコードを実行される脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2008-2435 | 2012-12-20 18:52 | 2008-12-23 | Show | GitHub Exploit DB Packet Storm |
| 228079 | 9.3 | 危険 | トレンドマイクロ | - | Housecall_ActiveX.dll の Trend Micro HouseCall ActiveX コントロールにおけるクライアントシステム上へ任意のライブラリファイルをダウンロードされる脆弱性 |
CWE-94
コード・インジェクション |
CVE-2008-2434 | 2012-12-20 18:52 | 2008-12-23 | Show | GitHub Exploit DB Packet Storm |
| 228080 | 7.5 | 危険 | トレンドマイクロ | - | Trend Micro OfficeScan などの Web 管理コンソールにおけるセッションをハイジャックされる脆弱性 |
CWE-287
不適切な認証 |
CVE-2008-2433 | 2012-12-20 18:52 | 2008-08-20 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 11, 2026, 4:09 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 196031 | 6.1 |
MEDIUM
Network |
gitlab | gitlab | GitLab EE 11.0 and later through 12.7.2 allows XSS. |
CWE-79
Cross-site Scripting |
CVE-2020-7971 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196032 | 7.5 |
HIGH
Network |
gitlab | gitlab | GitLab EE 8.0 and later through 12.7.2 allows Information Disclosure. |
NVD-CWE-noinfo
|
CVE-2020-7969 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196033 | 7.5 |
HIGH
Network |
gitlab | gitlab | GitLab EE 8.0 through 12.7.2 has Incorrect Access Control. |
CWE-862
Missing Authorization |
CVE-2020-7968 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196034 | 4.3 |
MEDIUM
Network |
gitlab | gitlab | GitLab EE 8.0 through 12.7.2 has Insecure Permissions (issue 1 of 2). |
CWE-276
Incorrect Default Permissions |
CVE-2020-7967 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196035 | 7.5 |
HIGH
Network |
gitlab | gitlab | GitLab EE 11.11 and later through 12.7.2 allows Directory Traversal. |
CWE-22
Path Traversal |
CVE-2020-7966 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196036 | 9.8 |
CRITICAL
Network |
gitlab | gitlab | GitLab EE 8.9 and later through 12.7.2 has Insecure Permission |
CWE-276
Incorrect Default Permissions |
CVE-2020-8114 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196037 | 5.3 |
MEDIUM
Network |
gitlab | gitlab | GitLab EE 8.9 and later through 12.7.2 has Insecure Permission |
CWE-276
Incorrect Default Permissions |
CVE-2020-7979 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196038 | 7.5 |
HIGH
Network |
squid-cache opensuse canonical |
squid leap ubuntu_linux |
An issue was discovered in Squid before 4.10. Due to incorrect input validation, the NTLM authentication credentials parser in ext_lm_group_acl may write to memory outside the credentials buffer. On … |
CWE-20 CWE-787 Improper Input Validation Out-of-bounds Write |
CVE-2020-8517 | 2024-11-21 14:38 | 2020-02-5 | Show | GitHub Exploit DB Packet Storm |
| 196039 | 7.3 |
HIGH
Network |
squid-cache canonical opensuse fedoraproject debian |
squid ubuntu_linux leap fedora debian_linux |
An issue was discovered in Squid before 4.10. Due to incorrect buffer management, a remote client can cause a buffer overflow in a Squid instance acting as a reverse proxy. |
CWE-787 CWE-131 Out-of-bounds Write Incorrect Calculation of Buffer Size |
CVE-2020-8450 | 2024-11-21 14:38 | 2020-02-5 | Show | GitHub Exploit DB Packet Storm |
| 196040 | 7.5 |
HIGH
Network |
squid-cache debian canonical opensuse fedoraproject |
squid debian_linux ubuntu_linux leap fedora |
An issue was discovered in Squid before 4.10. Due to incorrect input validation, it can interpret crafted HTTP requests in unexpected ways to access server resources prohibited by earlier security fi… |
CWE-668
Exposure of Resource to Wrong Sphere |
CVE-2020-8449 | 2024-11-21 14:38 | 2020-02-5 | Show | GitHub Exploit DB Packet Storm |