|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 19, 2026, 2 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 228301 | 7.5 | 危険 | ultrastats | - | Ultrastats の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-6260 | 2012-12-20 19:10 | 2009-02-24 | Show | GitHub Exploit DB Packet Storm |
| 228302 | 4.3 | 警告 | quadcomm | - | QuadComm Q-Shop の search.asp におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-6259 | 2012-12-20 19:10 | 2009-02-24 | Show | GitHub Exploit DB Packet Storm |
| 228303 | 7.5 | 危険 | quadcomm | - | QuadComm Q-Shop の users.asp における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-6258 | 2012-12-20 19:10 | 2009-02-24 | Show | GitHub Exploit DB Packet Storm |
| 228304 | 6.5 | 警告 | vBulletin Solutions, Inc. | - | vBulletin の admincp/admincalendar.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-6256 | 2012-12-20 19:10 | 2009-02-24 | Show | GitHub Exploit DB Packet Storm |
| 228305 | 6.5 | 警告 | vBulletin Solutions, Inc. | - | vBulletin における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-6255 | 2012-12-20 19:10 | 2009-02-24 | Show | GitHub Exploit DB Packet Storm |
| 228306 | 6.8 | 警告 | Pluck CMS | - | Pluck の data/inc/lib/pcltar.lib.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2008-6253 | 2012-12-20 19:10 | 2009-02-24 | Show | GitHub Exploit DB Packet Storm |
| 228307 | 7.2 | 危険 | smcfancontrol | - | smcFanControl の smc プログラムにおけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2008-6252 | 2012-12-20 19:10 | 2009-02-24 | Show | GitHub Exploit DB Packet Storm |
| 228308 | 6.8 | 警告 | scripts | - | phpFan の includes/init.php における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2008-6251 | 2012-12-20 19:10 | 2009-02-24 | Show | GitHub Exploit DB Packet Storm |
| 228309 | 7.5 | 危険 | scripts-for-sites | - | SFS EZ Top Sites の topsite.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-6247 | 2012-12-20 19:10 | 2009-02-23 | Show | GitHub Exploit DB Packet Storm |
| 228310 | 7.5 | 危険 | scripts-for-sites | - | SFS EZ Webring の category.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-6246 | 2012-12-20 19:10 | 2009-02-23 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 19, 2026, 4:16 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 221251 | 4.8 |
MEDIUM
Network |
netgear |
rbr20_firmware rbs20_firmware rbk20_firmware rbr40_firmware rbs40_firmware rbk40_firmware rbr50_firmware rbs50_firmware rbk50_firmware |
Certain NETGEAR devices are affected by stored XSS. This affects RBR20 before 2.3.5.26, RBS20 before 2.3.5.26, RBK20 before 2.3.5.26, RBR40 before 2.3.5.30, RBS40 before 2.3.5.30, RBK40 before 2.3.5.… |
CWE-79
Cross-site Scripting |
CVE-2019-20671 | 2024-11-21 13:39 | 2020-04-16 | Show | GitHub Exploit DB Packet Storm |
| 221252 | 4.8 |
MEDIUM
Network |
netgear |
rbr50_firmware rbs50_firmware rbk50_firmware |
Certain NETGEAR devices are affected by stored XSS. This affects RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30. |
CWE-79
Cross-site Scripting |
CVE-2019-20670 | 2024-11-21 13:39 | 2020-04-16 | Show | GitHub Exploit DB Packet Storm |
| 221253 | 4.8 |
MEDIUM
Network |
netgear |
rbr20_firmware rbs20_firmware rbk20_firmware rbr40_firmware rbs40_firmware rbk40_firmware rbr50_firmware rbs50_firmware rbk50_firmware |
Certain NETGEAR devices are affected by stored XSS. This affects RBR20 before 2.3.5.26, RBS20 before 2.3.5.26, RBK20 before 2.3.5.26, RBR40 before 2.3.5.30, RBS40 before 2.3.5.30, RBK40 before 2.3.5.… |
CWE-79
Cross-site Scripting |
CVE-2019-20669 | 2024-11-21 13:39 | 2020-04-16 | Show | GitHub Exploit DB Packet Storm |
| 221254 | 8.8 |
HIGH
Network |
netgear |
d6200_firmware d7000_firmware jr6150_firmware pr2000_firmware r6050_firmware r6120_firmware r6220_firmware r6260_firmware r6700_firmware r6800_firmware r6900_firmware |
Certain NETGEAR devices are affected by authentication bypass. This affects D6200 before 1.1.00.34, D7000 before 1.0.1.68, JR6150 before 1.0.1.18, PR2000 before 1.0.0.28, R6050 before 1.0.1.18, R6120… |
NVD-CWE-noinfo
|
CVE-2019-20681 | 2024-11-21 13:39 | 2020-04-16 | Show | GitHub Exploit DB Packet Storm |
| 221255 | 4.8 |
MEDIUM
Network |
netgear |
rbr20_firmware rbs20_firmware rbk20_firmware rbr40_firmware rbs40_firmware rbk40_firmware rbr50_firmware rbs50_firmware rbk50_firmware |
Certain NETGEAR devices are affected by stored XSS. This affects RBR20 before 2.3.5.26, RBS20 before 2.3.5.26, RBK20 before 2.3.5.26, RBR40 before 2.3.5.30, RBS40 before 2.3.5.30, RBK40 before 2.3.5.… |
CWE-79
Cross-site Scripting |
CVE-2019-20668 | 2024-11-21 13:39 | 2020-04-16 | Show | GitHub Exploit DB Packet Storm |
| 221256 | 4.8 |
MEDIUM
Network |
netgear |
rbr20_firmware rbs20_firmware rbk20_firmware rbr40_firmware rbs40_firmware rbk40_firmware rbr50_firmware rbs50_firmware rbk50_firmware |
Certain NETGEAR devices are affected by stored XSS. This affects RBR20 before 2.3.5.26, RBS20 before 2.3.5.26, RBK20 before 2.3.5.26, RBR40 before 2.3.5.30, RBS40 before 2.3.5.30, RBK40 before 2.3.5.… |
CWE-79
Cross-site Scripting |
CVE-2019-20667 | 2024-11-21 13:39 | 2020-04-16 | Show | GitHub Exploit DB Packet Storm |
| 221257 | 4.8 |
MEDIUM
Network |
netgear |
rbr50_firmware rbs50_firmware rbk50_firmware |
Certain NETGEAR devices are affected by stored XSS. This affects RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30. |
CWE-79
Cross-site Scripting |
CVE-2019-20666 | 2024-11-21 13:39 | 2020-04-16 | Show | GitHub Exploit DB Packet Storm |
| 221258 | 4.8 |
MEDIUM
Network |
netgear |
rbr20_firmware rbs20_firmware rbk20_firmware rbr40_firmware rbs40_firmware rbk40_firmware rbr50_firmware rbs50_firmware rbk50_firmware |
Certain NETGEAR devices are affected by stored XSS. This affects RBR20 before 2.3.5.26, RBS20 before 2.3.5.26, RBK20 before 2.3.5.26, RBR40 before 2.3.5.30, RBS40 before 2.3.5.30, RBK40 before 2.3.5.… |
CWE-79
Cross-site Scripting |
CVE-2019-20665 | 2024-11-21 13:39 | 2020-04-16 | Show | GitHub Exploit DB Packet Storm |
| 221259 | 8.0 |
HIGH
Adjacent |
netgear |
d7000_firmware r6220_firmware r6260_firmware r6700_firmware r6800_firmware r6900_firmware r6900p_firmware r7000_firmware r7000p_firmware r7800_firmware r7900_firmware | Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D7000v2 before 1.0.0.53, R6220 before 1.1.0.80, R6260 before 1.1.0.64, R6700 before 1.0.2.6, R6700v2 b… |
CWE-77
Command Injection |
CVE-2019-20680 | 2024-11-21 13:39 | 2020-04-16 | Show | GitHub Exploit DB Packet Storm |
| 221260 | 6.0 |
MEDIUM
Local |
netgear |
fs728tlp_firmware gs105e_firmware gs105pe_firmware gs108e_firmware gs108pe_firmware gs110emx_firmware gs116e_firmware gs408epp_firmware gs724tp_firmware gs808e_firmware … |
Certain NETGEAR devices are affected by lack of access control at the function level. This affects FS728TLP before 1.0.1.26, GS105Ev2 before 1.6.0.4, GS105PE before 1.6.0.4, GS108Ev3 before 2.06.08, … |
CWE-862
Missing Authorization |
CVE-2019-20676 | 2024-11-21 13:39 | 2020-04-16 | Show | GitHub Exploit DB Packet Storm |