|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 1, 2026, noon
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 228361 | 6.5 | 警告 | runcms | - | RunCMS の modules/forum/post.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-3804 | 2012-12-20 19:28 | 2009-10-27 | Show | GitHub Exploit DB Packet Storm |
| 228362 | 5 | 警告 | vivvo | - | Vivvo CMS の files.php におけるディレクトリトラバーサル攻撃を実行される脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-3787 | 2012-12-20 19:28 | 2009-10-26 | Show | GitHub Exploit DB Packet Storm |
| 228363 | 6.8 | 警告 | sjoerd arendsen | - | Drupal 用モジュールの Simplenews Statistics におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2009-3785 | 2012-12-20 19:28 | 2009-10-26 | Show | GitHub Exploit DB Packet Storm |
| 228364 | 6.8 | 警告 | sjoerd arendsen | - | Drupal 用モジュールの Simplenews Statistics におけるオープンリダイレクトの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2009-3784 | 2012-12-20 19:28 | 2009-10-26 | Show | GitHub Exploit DB Packet Storm |
| 228365 | 4.3 | 警告 | sjoerd arendsen | - | Drupal 用モジュールの Simplenews Statistics におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3783 | 2012-12-20 19:28 | 2009-10-26 | Show | GitHub Exploit DB Packet Storm |
| 228366 | 7.5 | 危険 | quicksketch | - | Drupal 用の FileField モジュールにおける許可されていないファイルにアクセスされる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-3781 | 2012-12-20 19:28 | 2009-10-21 | Show | GitHub Exploit DB Packet Storm |
| 228367 | 4.3 | 警告 | stefan auditor | - | Drupal 用の vCard モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3779 | 2012-12-20 19:28 | 2009-10-21 | Show | GitHub Exploit DB Packet Storm |
| 228368 | 7.5 | 危険 | santostefano giovanni | - | ToyLog の read.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-3750 | 2012-12-20 19:28 | 2009-10-22 | Show | GitHub Exploit DB Packet Storm |
| 228369 | 5 | 警告 | ウェブセンス | - | Websense Personal Email Manager および Email Security の Web Administrator サービスにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-Other
その他 |
CVE-2009-3749 | 2012-12-20 19:28 | 2009-10-22 | Show | GitHub Exploit DB Packet Storm |
| 228370 | 4.3 | 警告 | ウェブセンス | - | Websense Personal Email Manager および Email Security の Web Administrator におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3748 | 2012-12-20 19:28 | 2009-10-22 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 1, 2026, 4:12 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 194821 | 4.3 |
MEDIUM
Network |
mozilla debian |
firefox firefox_esr thunderbird debian_linux |
As specified in the W3C Content Security Policy draft, when creating a violation report, "User agents need to ensure that the source file is the URL requested by the page, pre-redirects. If that’s no… |
NVD-CWE-noinfo
|
CVE-2021-23969 | 2024-11-21 14:52 | 2021-02-26 | Show | GitHub Exploit DB Packet Storm |
| 194822 | 4.3 |
MEDIUM
Network |
mozilla debian |
firefox firefox_esr thunderbird debian_linux |
If Content Security Policy blocked frame navigation, the full destination of a redirect served in the frame was reported in the violation report; as opposed to the original frame URI. This could be u… |
CWE-209
Information Exposure Through an Error Message |
CVE-2021-23968 | 2024-11-21 14:52 | 2021-02-26 | Show | GitHub Exploit DB Packet Storm |
| 194823 | 5.7 |
MEDIUM
Network |
microsoft | teams | Microsoft Teams iOS Information Disclosure Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-24114 | 2024-11-21 14:52 | 2021-02-26 | Show | GitHub Exploit DB Packet Storm |
| 194824 | 5.4 |
MEDIUM
Network |
microsoft | edge_chromium | Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-24113 | 2024-11-21 14:52 | 2021-02-26 | Show | GitHub Exploit DB Packet Storm |
| 194825 | 8.1 |
HIGH
Network |
microsoft |
visual_studio_2019 mono .net .net_core |
.NET Core Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-24112 | 2024-11-21 14:52 | 2021-02-26 | Show | GitHub Exploit DB Packet Storm |
| 194826 | 7.5 |
HIGH
Network |
microsoft | .net_framework | .NET Framework Denial of Service Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-24111 | 2024-11-21 14:52 | 2021-02-26 | Show | GitHub Exploit DB Packet Storm |
| 194827 | 6.8 |
MEDIUM
Network |
microsoft | azure_kubernetes_service | Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-24109 | 2024-11-21 14:52 | 2021-02-26 | Show | GitHub Exploit DB Packet Storm |
| 194828 | 5.5 |
MEDIUM
Local |
microsoft |
windows_10 windows_server_2019 windows_server_2016 |
Windows DirectX Information Disclosure Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-24106 | 2024-11-21 14:52 | 2021-02-26 | Show | GitHub Exploit DB Packet Storm |
| 194829 | 7.8 |
HIGH
Local |
microsoft |
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019 |
Windows Event Tracing Elevation of Privilege Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-24103 | 2024-11-21 14:52 | 2021-02-26 | Show | GitHub Exploit DB Packet Storm |
| 194830 | 7.8 |
HIGH
Local |
microsoft |
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019 |
Windows Event Tracing Elevation of Privilege Vulnerability |
CWE-269
Improper Privilege Management |
CVE-2021-24102 | 2024-11-21 14:52 | 2021-02-26 | Show | GitHub Exploit DB Packet Storm |