|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 31, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 228361 | 6.5 | 警告 | runcms | - | RunCMS の modules/forum/post.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-3804 | 2012-12-20 19:28 | 2009-10-27 | Show | GitHub Exploit DB Packet Storm |
| 228362 | 5 | 警告 | vivvo | - | Vivvo CMS の files.php におけるディレクトリトラバーサル攻撃を実行される脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-3787 | 2012-12-20 19:28 | 2009-10-26 | Show | GitHub Exploit DB Packet Storm |
| 228363 | 6.8 | 警告 | sjoerd arendsen | - | Drupal 用モジュールの Simplenews Statistics におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2009-3785 | 2012-12-20 19:28 | 2009-10-26 | Show | GitHub Exploit DB Packet Storm |
| 228364 | 6.8 | 警告 | sjoerd arendsen | - | Drupal 用モジュールの Simplenews Statistics におけるオープンリダイレクトの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2009-3784 | 2012-12-20 19:28 | 2009-10-26 | Show | GitHub Exploit DB Packet Storm |
| 228365 | 4.3 | 警告 | sjoerd arendsen | - | Drupal 用モジュールの Simplenews Statistics におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3783 | 2012-12-20 19:28 | 2009-10-26 | Show | GitHub Exploit DB Packet Storm |
| 228366 | 7.5 | 危険 | quicksketch | - | Drupal 用の FileField モジュールにおける許可されていないファイルにアクセスされる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-3781 | 2012-12-20 19:28 | 2009-10-21 | Show | GitHub Exploit DB Packet Storm |
| 228367 | 4.3 | 警告 | stefan auditor | - | Drupal 用の vCard モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3779 | 2012-12-20 19:28 | 2009-10-21 | Show | GitHub Exploit DB Packet Storm |
| 228368 | 7.5 | 危険 | santostefano giovanni | - | ToyLog の read.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-3750 | 2012-12-20 19:28 | 2009-10-22 | Show | GitHub Exploit DB Packet Storm |
| 228369 | 5 | 警告 | ウェブセンス | - | Websense Personal Email Manager および Email Security の Web Administrator サービスにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-Other
その他 |
CVE-2009-3749 | 2012-12-20 19:28 | 2009-10-22 | Show | GitHub Exploit DB Packet Storm |
| 228370 | 4.3 | 警告 | ウェブセンス | - | Websense Personal Email Manager および Email Security の Web Administrator におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3748 | 2012-12-20 19:28 | 2009-10-22 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 31, 2026, 4:16 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 194811 | 8.8 |
HIGH
Network |
microsoft |
sharepoint_foundation sharepoint_enterprise_server sharepoint_server |
Microsoft SharePoint Server Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-24072 | 2024-11-21 14:52 | 2021-02-26 | Show | GitHub Exploit DB Packet Storm |
| 194812 | 5.3 |
MEDIUM
Network |
microsoft |
sharepoint_foundation sharepoint_enterprise_server sharepoint_server |
Microsoft SharePoint Information Disclosure Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-24071 | 2024-11-21 14:52 | 2021-02-26 | Show | GitHub Exploit DB Packet Storm |
| 194813 | 7.8 |
HIGH
Local |
microsoft |
excel office_web_apps office_online_server office 365_apps |
Microsoft Excel Remote Code Execution Vulnerability |
CWE-416
Use After Free |
CVE-2021-24070 | 2024-11-21 14:52 | 2021-02-26 | Show | GitHub Exploit DB Packet Storm |
| 194814 | 7.8 |
HIGH
Local |
microsoft |
excel office_web_apps office_online_server office 365_apps |
Microsoft Excel Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-24069 | 2024-11-21 14:52 | 2021-02-26 | Show | GitHub Exploit DB Packet Storm |
| 194815 | 7.8 |
HIGH
Local |
microsoft |
excel office_web_apps |
Microsoft Excel Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-24068 | 2024-11-21 14:52 | 2021-02-26 | Show | GitHub Exploit DB Packet Storm |
| 194816 | 7.8 |
HIGH
Local |
microsoft |
excel office_web_apps office_online_server office 365_apps |
Microsoft Excel Remote Code Execution Vulnerability |
CWE-416
Use After Free |
CVE-2021-24067 | 2024-11-21 14:52 | 2021-02-26 | Show | GitHub Exploit DB Packet Storm |
| 194817 | 8.8 |
HIGH
Network |
microsoft |
sharepoint_foundation sharepoint_enterprise_server sharepoint_server |
Microsoft SharePoint Remote Code Execution Vulnerability |
CWE-502
Deserialization of Untrusted Data |
CVE-2021-24066 | 2024-11-21 14:52 | 2021-02-26 | Show | GitHub Exploit DB Packet Storm |
| 194818 | 9.8 |
CRITICAL
Network |
botan_project | botan | In Botan before 2.17.3, constant-time computations are not used for certain decoding and encoding operations (base32, base58, base64, and hex). |
NVD-CWE-noinfo
|
CVE-2021-24115 | 2024-11-21 14:52 | 2021-02-22 | Show | GitHub Exploit DB Packet Storm |
| 194819 | 8.8 |
HIGH
Network |
mcafee | web_gateway | Privilege escalation vulnerability in McAfee Web Gateway (MWG) prior to 9.2.8 allows an authenticated user to gain elevated privileges through the User Interface and execute commands on the appliance… |
NVD-CWE-Other
|
CVE-2021-23885 | 2024-11-21 14:52 | 2021-02-17 | Show | GitHub Exploit DB Packet Storm |
| 194820 | 9.1 |
CRITICAL
Network |
apache netapp |
nutch snap_creator_framework |
An XML external entity (XXE) injection vulnerability was discovered in the Nutch DmozParser and is known to affect Nutch versions < 1.18. XML external entity injection (also known as XXE) is a web se… |
CWE-611
XXE |
CVE-2021-23901 | 2024-11-21 14:52 | 2021-01-25 | Show | GitHub Exploit DB Packet Storm |