|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 11, 2026, 6:01 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 228221 | 7.5 | 危険 | w2b | - | W2B phpHotResources の cat.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-1844 | 2012-12-20 18:52 | 2008-04-16 | Show | GitHub Exploit DB Packet Storm |
| 228222 | 7.5 | 危険 | w2b | - | W2B DatingClub の browse.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-1843 | 2012-12-20 18:52 | 2008-04-16 | Show | GitHub Exploit DB Packet Storm |
| 228223 | 4.3 | 警告 | work system e-commerce | - | WORK system e-commerce の module/main.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-1839 | 2012-12-20 18:52 | 2008-04-16 | Show | GitHub Exploit DB Packet Storm |
| 228224 | 4.3 | 警告 | swfdec | - | Swfdec の swfdec_load_object.c における任意のファイルを読まれる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-1834 | 2012-12-20 18:52 | 2008-04-16 | Show | GitHub Exploit DB Packet Storm |
| 228225 | 4.4 | 警告 | SAP | - | Linux 上で稼動する SAP MaxDB の dbmsrv における権限を取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-1810 | 2012-12-20 18:52 | 2008-08-1 | Show | GitHub Exploit DB Packet Storm |
| 228226 | 9.3 | 危険 | Skype Technologies S.A. | - | Skype における警告ダイアログを回避される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2008-1805 | 2012-12-20 18:52 | 2008-06-6 | Show | GitHub Exploit DB Packet Storm |
| 228227 | 9.3 | 危険 | Rdesktop | - | rdesktop の process_redirect_pdu 関数におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2008-1802 | 2012-12-20 18:52 | 2008-05-12 | Show | GitHub Exploit DB Packet Storm |
| 228228 | 5 | 警告 | sabros.us | - | sabros.us の thumbnails.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2008-1799 | 2012-12-20 18:52 | 2008-04-15 | Show | GitHub Exploit DB Packet Storm |
| 228229 | 7.1 | 危険 | securecomputing | - | Secure Computing Webwasher におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-noinfo
情報不足 |
CVE-2008-1797 | 2012-12-20 18:52 | 2008-04-15 | Show | GitHub Exploit DB Packet Storm |
| 228230 | 6.8 | 警告 | prozilla | - | Prozilla Forum の forum.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-1789 | 2012-12-20 18:52 | 2008-04-15 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 11, 2026, 4:09 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 196031 | 6.1 |
MEDIUM
Network |
gitlab | gitlab | GitLab EE 11.0 and later through 12.7.2 allows XSS. |
CWE-79
Cross-site Scripting |
CVE-2020-7971 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196032 | 7.5 |
HIGH
Network |
gitlab | gitlab | GitLab EE 8.0 and later through 12.7.2 allows Information Disclosure. |
NVD-CWE-noinfo
|
CVE-2020-7969 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196033 | 7.5 |
HIGH
Network |
gitlab | gitlab | GitLab EE 8.0 through 12.7.2 has Incorrect Access Control. |
CWE-862
Missing Authorization |
CVE-2020-7968 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196034 | 4.3 |
MEDIUM
Network |
gitlab | gitlab | GitLab EE 8.0 through 12.7.2 has Insecure Permissions (issue 1 of 2). |
CWE-276
Incorrect Default Permissions |
CVE-2020-7967 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196035 | 7.5 |
HIGH
Network |
gitlab | gitlab | GitLab EE 11.11 and later through 12.7.2 allows Directory Traversal. |
CWE-22
Path Traversal |
CVE-2020-7966 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196036 | 9.8 |
CRITICAL
Network |
gitlab | gitlab | GitLab EE 8.9 and later through 12.7.2 has Insecure Permission |
CWE-276
Incorrect Default Permissions |
CVE-2020-8114 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196037 | 5.3 |
MEDIUM
Network |
gitlab | gitlab | GitLab EE 8.9 and later through 12.7.2 has Insecure Permission |
CWE-276
Incorrect Default Permissions |
CVE-2020-7979 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196038 | 7.5 |
HIGH
Network |
squid-cache opensuse canonical |
squid leap ubuntu_linux |
An issue was discovered in Squid before 4.10. Due to incorrect input validation, the NTLM authentication credentials parser in ext_lm_group_acl may write to memory outside the credentials buffer. On … |
CWE-20 CWE-787 Improper Input Validation Out-of-bounds Write |
CVE-2020-8517 | 2024-11-21 14:38 | 2020-02-5 | Show | GitHub Exploit DB Packet Storm |
| 196039 | 7.3 |
HIGH
Network |
squid-cache canonical opensuse fedoraproject debian |
squid ubuntu_linux leap fedora debian_linux |
An issue was discovered in Squid before 4.10. Due to incorrect buffer management, a remote client can cause a buffer overflow in a Squid instance acting as a reverse proxy. |
CWE-787 CWE-131 Out-of-bounds Write Incorrect Calculation of Buffer Size |
CVE-2020-8450 | 2024-11-21 14:38 | 2020-02-5 | Show | GitHub Exploit DB Packet Storm |
| 196040 | 7.5 |
HIGH
Network |
squid-cache debian canonical opensuse fedoraproject |
squid debian_linux ubuntu_linux leap fedora |
An issue was discovered in Squid before 4.10. Due to incorrect input validation, it can interpret crafted HTTP requests in unexpected ways to access server resources prohibited by earlier security fi… |
CWE-668
Exposure of Resource to Wrong Sphere |
CVE-2020-8449 | 2024-11-21 14:38 | 2020-02-5 | Show | GitHub Exploit DB Packet Storm |