|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 31, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 228431 | 6.8 | 警告 | todor lazarov | - | T-HTB Manager の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-3494 | 2012-12-20 19:28 | 2009-09-30 | Show | GitHub Exploit DB Packet Storm |
| 228432 | 4.3 | 警告 | zenas | - | Zenas PaoBacheca Guestbook におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3493 | 2012-12-20 19:28 | 2009-09-30 | Show | GitHub Exploit DB Packet Storm |
| 228433 | 2.1 | 注意 | ron jerome | - | Drupal 用の Bibliography モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3488 | 2012-12-20 19:28 | 2009-09-30 | Show | GitHub Exploit DB Packet Storm |
| 228434 | 6.8 | 警告 | TrustPort | - | TrustPort Antivirus などにおける権限を取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-3482 | 2012-12-20 19:28 | 2009-09-30 | Show | GitHub Exploit DB Packet Storm |
| 228435 | 5 | 警告 | radactive | - | RADactive I-Load の WebCoreModule.ashx における重要な情報を取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2009-3452 | 2012-12-20 19:28 | 2009-09-29 | Show | GitHub Exploit DB Packet Storm |
| 228436 | 5 | 警告 | radactive | - | RADactive I-Load の WebCoreModule.ashx におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-3451 | 2012-12-20 19:28 | 2009-09-29 | Show | GitHub Exploit DB Packet Storm |
| 228437 | 4.7 | 警告 | reductivelabs | - | puppet の puppetmasterd における制限ファイルにアクセスされる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-3564 | 2012-12-20 19:28 | 2008-12-8 | Show | GitHub Exploit DB Packet Storm |
| 228438 | 4.3 | 警告 | radactive | - | RADactive I-Load の WebCoreModule.ashx におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3450 | 2012-12-20 19:28 | 2009-09-29 | Show | GitHub Exploit DB Packet Storm |
| 228439 | 6.8 | 警告 | radactive | - | RADactive I-Load における任意のコードを実行される脆弱性 |
CWE-362
競合状態 |
CVE-2009-3447 | 2012-12-20 19:28 | 2009-09-29 | Show | GitHub Exploit DB Packet Storm |
| 228440 | 7.5 | 危険 | rick estrada | - | Joomla! 用の MyRemote Video Gallery コンポーネントにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-3446 | 2012-12-20 19:28 | 2009-09-28 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 31, 2026, 4:16 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 194811 | 8.8 |
HIGH
Network |
microsoft |
sharepoint_foundation sharepoint_enterprise_server sharepoint_server |
Microsoft SharePoint Server Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-24072 | 2024-11-21 14:52 | 2021-02-26 | Show | GitHub Exploit DB Packet Storm |
| 194812 | 5.3 |
MEDIUM
Network |
microsoft |
sharepoint_foundation sharepoint_enterprise_server sharepoint_server |
Microsoft SharePoint Information Disclosure Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-24071 | 2024-11-21 14:52 | 2021-02-26 | Show | GitHub Exploit DB Packet Storm |
| 194813 | 7.8 |
HIGH
Local |
microsoft |
excel office_web_apps office_online_server office 365_apps |
Microsoft Excel Remote Code Execution Vulnerability |
CWE-416
Use After Free |
CVE-2021-24070 | 2024-11-21 14:52 | 2021-02-26 | Show | GitHub Exploit DB Packet Storm |
| 194814 | 7.8 |
HIGH
Local |
microsoft |
excel office_web_apps office_online_server office 365_apps |
Microsoft Excel Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-24069 | 2024-11-21 14:52 | 2021-02-26 | Show | GitHub Exploit DB Packet Storm |
| 194815 | 7.8 |
HIGH
Local |
microsoft |
excel office_web_apps |
Microsoft Excel Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-24068 | 2024-11-21 14:52 | 2021-02-26 | Show | GitHub Exploit DB Packet Storm |
| 194816 | 7.8 |
HIGH
Local |
microsoft |
excel office_web_apps office_online_server office 365_apps |
Microsoft Excel Remote Code Execution Vulnerability |
CWE-416
Use After Free |
CVE-2021-24067 | 2024-11-21 14:52 | 2021-02-26 | Show | GitHub Exploit DB Packet Storm |
| 194817 | 8.8 |
HIGH
Network |
microsoft |
sharepoint_foundation sharepoint_enterprise_server sharepoint_server |
Microsoft SharePoint Remote Code Execution Vulnerability |
CWE-502
Deserialization of Untrusted Data |
CVE-2021-24066 | 2024-11-21 14:52 | 2021-02-26 | Show | GitHub Exploit DB Packet Storm |
| 194818 | 9.8 |
CRITICAL
Network |
botan_project | botan | In Botan before 2.17.3, constant-time computations are not used for certain decoding and encoding operations (base32, base58, base64, and hex). |
NVD-CWE-noinfo
|
CVE-2021-24115 | 2024-11-21 14:52 | 2021-02-22 | Show | GitHub Exploit DB Packet Storm |
| 194819 | 8.8 |
HIGH
Network |
mcafee | web_gateway | Privilege escalation vulnerability in McAfee Web Gateway (MWG) prior to 9.2.8 allows an authenticated user to gain elevated privileges through the User Interface and execute commands on the appliance… |
NVD-CWE-Other
|
CVE-2021-23885 | 2024-11-21 14:52 | 2021-02-17 | Show | GitHub Exploit DB Packet Storm |
| 194820 | 9.1 |
CRITICAL
Network |
apache netapp |
nutch snap_creator_framework |
An XML external entity (XXE) injection vulnerability was discovered in the Nutch DmozParser and is known to affect Nutch versions < 1.18. XML external entity injection (also known as XXE) is a web se… |
CWE-611
XXE |
CVE-2021-23901 | 2024-11-21 14:52 | 2021-01-25 | Show | GitHub Exploit DB Packet Storm |