|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 11, 2026, 4:01 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 228301 | 4.3 | 警告 | webSPELL | - | webSPELL の index.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-1481 | 2012-12-20 18:52 | 2008-03-24 | Show | GitHub Exploit DB Packet Storm |
| 228302 | 4.3 | 警告 | s9y | - | S9Y におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-1476 | 2012-12-20 18:52 | 2008-03-18 | Show | GitHub Exploit DB Packet Storm |
| 228303 | 6.4 | 警告 | Roundup | - | Roundup の xml-rpc サーバにおける制限を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-1475 | 2012-12-20 18:52 | 2008-03-24 | Show | GitHub Exploit DB Packet Storm |
| 228304 | 4.3 | 警告 | Roundup | - | Roundup における脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-1474 | 2012-12-20 18:52 | 2008-03-24 | Show | GitHub Exploit DB Packet Storm |
| 228305 | 7.2 | 危険 | シマンテック | - | Symantec Altiris Deployment Solution の Altiris Client Service における権限を取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-1473 | 2012-12-20 18:52 | 2008-03-10 | Show | GitHub Exploit DB Packet Storm |
| 228306 | 4.3 | 警告 | RSAセキュリティ | - | WebID RSA Authentication Agent の IISWebAgentIF.dll におけるクロスサイトスクリプティング (XSS) 攻撃を実行される脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-1470 | 2012-12-20 18:52 | 2008-03-24 | Show | GitHub Exploit DB Packet Storm |
| 228307 | 7.5 | 危険 | W-Agora | - | W-Agora における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2008-1466 | 2012-12-20 18:52 | 2008-03-24 | Show | GitHub Exploit DB Packet Storm |
| 228308 | 6.8 | 警告 | runcms | - | RunCMS の Section モジュールにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-1462 | 2012-12-20 18:52 | 2008-03-24 | Show | GitHub Exploit DB Packet Storm |
| 228309 | 7.6 | 危険 | XnSoft | - | XnView におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2008-1461 | 2012-12-20 18:52 | 2008-03-24 | Show | GitHub Exploit DB Packet Storm |
| 228310 | 2.1 | 注意 | raidsonic technology | - | RaidSonic NAS-4220-B における暗号鍵を取得される脆弱性 |
CWE-310
暗号の問題 |
CVE-2008-1431 | 2012-12-20 18:52 | 2008-03-20 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 11, 2026, 4:09 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 196031 | 6.1 |
MEDIUM
Network |
gitlab | gitlab | GitLab EE 11.0 and later through 12.7.2 allows XSS. |
CWE-79
Cross-site Scripting |
CVE-2020-7971 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196032 | 7.5 |
HIGH
Network |
gitlab | gitlab | GitLab EE 8.0 and later through 12.7.2 allows Information Disclosure. |
NVD-CWE-noinfo
|
CVE-2020-7969 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196033 | 7.5 |
HIGH
Network |
gitlab | gitlab | GitLab EE 8.0 through 12.7.2 has Incorrect Access Control. |
CWE-862
Missing Authorization |
CVE-2020-7968 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196034 | 4.3 |
MEDIUM
Network |
gitlab | gitlab | GitLab EE 8.0 through 12.7.2 has Insecure Permissions (issue 1 of 2). |
CWE-276
Incorrect Default Permissions |
CVE-2020-7967 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196035 | 7.5 |
HIGH
Network |
gitlab | gitlab | GitLab EE 11.11 and later through 12.7.2 allows Directory Traversal. |
CWE-22
Path Traversal |
CVE-2020-7966 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196036 | 9.8 |
CRITICAL
Network |
gitlab | gitlab | GitLab EE 8.9 and later through 12.7.2 has Insecure Permission |
CWE-276
Incorrect Default Permissions |
CVE-2020-8114 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196037 | 5.3 |
MEDIUM
Network |
gitlab | gitlab | GitLab EE 8.9 and later through 12.7.2 has Insecure Permission |
CWE-276
Incorrect Default Permissions |
CVE-2020-7979 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 196038 | 7.5 |
HIGH
Network |
squid-cache opensuse canonical |
squid leap ubuntu_linux |
An issue was discovered in Squid before 4.10. Due to incorrect input validation, the NTLM authentication credentials parser in ext_lm_group_acl may write to memory outside the credentials buffer. On … |
CWE-20 CWE-787 Improper Input Validation Out-of-bounds Write |
CVE-2020-8517 | 2024-11-21 14:38 | 2020-02-5 | Show | GitHub Exploit DB Packet Storm |
| 196039 | 7.3 |
HIGH
Network |
squid-cache canonical opensuse fedoraproject debian |
squid ubuntu_linux leap fedora debian_linux |
An issue was discovered in Squid before 4.10. Due to incorrect buffer management, a remote client can cause a buffer overflow in a Squid instance acting as a reverse proxy. |
CWE-787 CWE-131 Out-of-bounds Write Incorrect Calculation of Buffer Size |
CVE-2020-8450 | 2024-11-21 14:38 | 2020-02-5 | Show | GitHub Exploit DB Packet Storm |
| 196040 | 7.5 |
HIGH
Network |
squid-cache debian canonical opensuse fedoraproject |
squid debian_linux ubuntu_linux leap fedora |
An issue was discovered in Squid before 4.10. Due to incorrect input validation, it can interpret crafted HTTP requests in unexpected ways to access server resources prohibited by earlier security fi… |
CWE-668
Exposure of Resource to Wrong Sphere |
CVE-2020-8449 | 2024-11-21 14:38 | 2020-02-5 | Show | GitHub Exploit DB Packet Storm |