|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 11, 2026, 6:01 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 228081 | 9.3 | 危険 | VideoLAN | - | Windows 上で稼動する VLC Media Player の modules/demux/wav.c における整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2008-2430 | 2012-12-20 18:52 | 2008-07-7 | Show | GitHub Exploit DB Packet Storm |
| 228082 | 6.8 | 警告 | torrenttrader | - | TorrentTrader Classic における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-2428 | 2012-12-20 18:52 | 2008-06-18 | Show | GitHub Exploit DB Packet Storm |
| 228083 | 7.5 | 危険 | webslider | - | Web Slider の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-2422 | 2012-12-20 18:52 | 2008-05-23 | Show | GitHub Exploit DB Packet Storm |
| 228084 | 4.3 | 警告 | SAP | - | SAP WAS などの Web GUI におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-2421 | 2012-12-20 18:52 | 2008-05-23 | Show | GitHub Exploit DB Packet Storm |
| 228085 | 6.8 | 警告 | stunnel | - | stunnel の OCSP 関数におけるアクセス制限を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-2420 | 2012-12-20 18:52 | 2008-05-23 | Show | GitHub Exploit DB Packet Storm |
| 228086 | 6.8 | 警告 | sazcart | - | SazCart の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-2411 | 2012-12-20 18:52 | 2008-05-22 | Show | GitHub Exploit DB Packet Storm |
| 228087 | 7.5 | 危険 | サン・マイクロシステムズ | - | Sun Java ASP Server の管理アプリケーションサーバにおける認証を回避される脆弱性 |
CWE-287
不適切な認証 |
CVE-2008-2406 | 2012-12-20 18:52 | 2008-06-3 | Show | GitHub Exploit DB Packet Storm |
| 228088 | 7.5 | 危険 | サン・マイクロシステムズ | - | Sun Java ASP Server における任意のコマンドを実行される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2008-2405 | 2012-12-20 18:52 | 2008-06-3 | Show | GitHub Exploit DB Packet Storm |
| 228089 | 10 | 危険 | サン・マイクロシステムズ | - | Sun Java ASP Server のリクエスト処理実装におけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2008-2404 | 2012-12-20 18:52 | 2008-06-3 | Show | GitHub Exploit DB Packet Storm |
| 228090 | 5 | 警告 | サン・マイクロシステムズ | - | Sun Java ASP Server の Admin Server におけるパスワードハッシュを読まれる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-2402 | 2012-12-20 18:52 | 2008-06-3 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 11, 2026, 4:09 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 196031 | 6.1 |
MEDIUM
Network |
gitlab | gitlab | GitLab EE 11.0 and later through 12.7.2 allows XSS. |
CWE-79
Cross-site Scripting |
CVE-2020-7971 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196032 | 7.5 |
HIGH
Network |
gitlab | gitlab | GitLab EE 8.0 and later through 12.7.2 allows Information Disclosure. |
NVD-CWE-noinfo
|
CVE-2020-7969 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196033 | 7.5 |
HIGH
Network |
gitlab | gitlab | GitLab EE 8.0 through 12.7.2 has Incorrect Access Control. |
CWE-862
Missing Authorization |
CVE-2020-7968 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196034 | 4.3 |
MEDIUM
Network |
gitlab | gitlab | GitLab EE 8.0 through 12.7.2 has Insecure Permissions (issue 1 of 2). |
CWE-276
Incorrect Default Permissions |
CVE-2020-7967 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196035 | 7.5 |
HIGH
Network |
gitlab | gitlab | GitLab EE 11.11 and later through 12.7.2 allows Directory Traversal. |
CWE-22
Path Traversal |
CVE-2020-7966 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196036 | 9.8 |
CRITICAL
Network |
gitlab | gitlab | GitLab EE 8.9 and later through 12.7.2 has Insecure Permission |
CWE-276
Incorrect Default Permissions |
CVE-2020-8114 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196037 | 5.3 |
MEDIUM
Network |
gitlab | gitlab | GitLab EE 8.9 and later through 12.7.2 has Insecure Permission |
CWE-276
Incorrect Default Permissions |
CVE-2020-7979 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196038 | 7.5 |
HIGH
Network |
squid-cache opensuse canonical |
squid leap ubuntu_linux |
An issue was discovered in Squid before 4.10. Due to incorrect input validation, the NTLM authentication credentials parser in ext_lm_group_acl may write to memory outside the credentials buffer. On … |
CWE-20 CWE-787 Improper Input Validation Out-of-bounds Write |
CVE-2020-8517 | 2024-11-21 14:38 | 2020-02-5 | Show | GitHub Exploit DB Packet Storm |
| 196039 | 7.3 |
HIGH
Network |
squid-cache canonical opensuse fedoraproject debian |
squid ubuntu_linux leap fedora debian_linux |
An issue was discovered in Squid before 4.10. Due to incorrect buffer management, a remote client can cause a buffer overflow in a Squid instance acting as a reverse proxy. |
CWE-787 CWE-131 Out-of-bounds Write Incorrect Calculation of Buffer Size |
CVE-2020-8450 | 2024-11-21 14:38 | 2020-02-5 | Show | GitHub Exploit DB Packet Storm |
| 196040 | 7.5 |
HIGH
Network |
squid-cache debian canonical opensuse fedoraproject |
squid debian_linux ubuntu_linux leap fedora |
An issue was discovered in Squid before 4.10. Due to incorrect input validation, it can interpret crafted HTTP requests in unexpected ways to access server resources prohibited by earlier security fi… |
CWE-668
Exposure of Resource to Wrong Sphere |
CVE-2020-8449 | 2024-11-21 14:38 | 2020-02-5 | Show | GitHub Exploit DB Packet Storm |