|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 19, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 228451 | 7.5 | 危険 | phpweather | - | PHP Weather の test.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2008-5771 | 2012-12-20 19:10 | 2008-12-30 | Show | GitHub Exploit DB Packet Storm |
| 228452 | 4.3 | 警告 | phpweather | - | PHP Weather の config/make_config.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-5770 | 2012-12-20 19:10 | 2008-12-30 | Show | GitHub Exploit DB Packet Storm |
| 228453 | 7.5 | 危険 | sirium | - | XOOPS 用の AM Events モジュールにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-5768 | 2012-12-20 19:10 | 2008-12-30 | Show | GitHub Exploit DB Packet Storm |
| 228454 | 6.8 | 警告 | phparanoid | - | PHParanoid におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2008-5758 | 2012-12-20 19:10 | 2008-12-30 | Show | GitHub Exploit DB Packet Storm |
| 228455 | 3.5 | 注意 | Textpattern | - | Textpattern の textarea/index.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-5757 | 2012-12-20 19:10 | 2008-12-30 | Show | GitHub Exploit DB Packet Storm |
| 228456 | 4.3 | 警告 | WordPress.org | - | WordPress 用の Page Flip Image Gallery プラグインにおけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2008-5752 | 2012-12-20 19:10 | 2008-12-30 | Show | GitHub Exploit DB Packet Storm |
| 228457 | 7.5 | 危険 | Pligg | - | Pligg CMS の evb/check_url.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-5739 | 2012-12-20 19:10 | 2008-12-26 | Show | GitHub Exploit DB Packet Storm |
| 228458 | 7.5 | 危険 | PHP-Fusion | - | PHP-Fusion 用の Team Impact TI Blog System モジュールにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-5733 | 2012-12-20 19:10 | 2008-12-26 | Show | GitHub Exploit DB Packet Storm |
| 228459 | 7.5 | 危険 | stormboards aaronnemisis | - | stormBoards の thread.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-5726 | 2012-12-20 19:10 | 2008-12-26 | Show | GitHub Exploit DB Packet Storm |
| 228460 | 10 | 危険 | sawstudio | - | SAWStudio におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2008-5722 | 2012-12-20 19:10 | 2008-12-26 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 19, 2026, 4:16 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 221251 | 4.8 |
MEDIUM
Network |
netgear |
rbr20_firmware rbs20_firmware rbk20_firmware rbr40_firmware rbs40_firmware rbk40_firmware rbr50_firmware rbs50_firmware rbk50_firmware |
Certain NETGEAR devices are affected by stored XSS. This affects RBR20 before 2.3.5.26, RBS20 before 2.3.5.26, RBK20 before 2.3.5.26, RBR40 before 2.3.5.30, RBS40 before 2.3.5.30, RBK40 before 2.3.5.… |
CWE-79
Cross-site Scripting |
CVE-2019-20671 | 2024-11-21 13:39 | 2020-04-16 | Show | GitHub Exploit DB Packet Storm |
| 221252 | 4.8 |
MEDIUM
Network |
netgear |
rbr50_firmware rbs50_firmware rbk50_firmware |
Certain NETGEAR devices are affected by stored XSS. This affects RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30. |
CWE-79
Cross-site Scripting |
CVE-2019-20670 | 2024-11-21 13:39 | 2020-04-16 | Show | GitHub Exploit DB Packet Storm |
| 221253 | 4.8 |
MEDIUM
Network |
netgear |
rbr20_firmware rbs20_firmware rbk20_firmware rbr40_firmware rbs40_firmware rbk40_firmware rbr50_firmware rbs50_firmware rbk50_firmware |
Certain NETGEAR devices are affected by stored XSS. This affects RBR20 before 2.3.5.26, RBS20 before 2.3.5.26, RBK20 before 2.3.5.26, RBR40 before 2.3.5.30, RBS40 before 2.3.5.30, RBK40 before 2.3.5.… |
CWE-79
Cross-site Scripting |
CVE-2019-20669 | 2024-11-21 13:39 | 2020-04-16 | Show | GitHub Exploit DB Packet Storm |
| 221254 | 8.8 |
HIGH
Network |
netgear |
d6200_firmware d7000_firmware jr6150_firmware pr2000_firmware r6050_firmware r6120_firmware r6220_firmware r6260_firmware r6700_firmware r6800_firmware r6900_firmware |
Certain NETGEAR devices are affected by authentication bypass. This affects D6200 before 1.1.00.34, D7000 before 1.0.1.68, JR6150 before 1.0.1.18, PR2000 before 1.0.0.28, R6050 before 1.0.1.18, R6120… |
NVD-CWE-noinfo
|
CVE-2019-20681 | 2024-11-21 13:39 | 2020-04-16 | Show | GitHub Exploit DB Packet Storm |
| 221255 | 4.8 |
MEDIUM
Network |
netgear |
rbr20_firmware rbs20_firmware rbk20_firmware rbr40_firmware rbs40_firmware rbk40_firmware rbr50_firmware rbs50_firmware rbk50_firmware |
Certain NETGEAR devices are affected by stored XSS. This affects RBR20 before 2.3.5.26, RBS20 before 2.3.5.26, RBK20 before 2.3.5.26, RBR40 before 2.3.5.30, RBS40 before 2.3.5.30, RBK40 before 2.3.5.… |
CWE-79
Cross-site Scripting |
CVE-2019-20668 | 2024-11-21 13:39 | 2020-04-16 | Show | GitHub Exploit DB Packet Storm |
| 221256 | 4.8 |
MEDIUM
Network |
netgear |
rbr20_firmware rbs20_firmware rbk20_firmware rbr40_firmware rbs40_firmware rbk40_firmware rbr50_firmware rbs50_firmware rbk50_firmware |
Certain NETGEAR devices are affected by stored XSS. This affects RBR20 before 2.3.5.26, RBS20 before 2.3.5.26, RBK20 before 2.3.5.26, RBR40 before 2.3.5.30, RBS40 before 2.3.5.30, RBK40 before 2.3.5.… |
CWE-79
Cross-site Scripting |
CVE-2019-20667 | 2024-11-21 13:39 | 2020-04-16 | Show | GitHub Exploit DB Packet Storm |
| 221257 | 4.8 |
MEDIUM
Network |
netgear |
rbr50_firmware rbs50_firmware rbk50_firmware |
Certain NETGEAR devices are affected by stored XSS. This affects RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30. |
CWE-79
Cross-site Scripting |
CVE-2019-20666 | 2024-11-21 13:39 | 2020-04-16 | Show | GitHub Exploit DB Packet Storm |
| 221258 | 4.8 |
MEDIUM
Network |
netgear |
rbr20_firmware rbs20_firmware rbk20_firmware rbr40_firmware rbs40_firmware rbk40_firmware rbr50_firmware rbs50_firmware rbk50_firmware |
Certain NETGEAR devices are affected by stored XSS. This affects RBR20 before 2.3.5.26, RBS20 before 2.3.5.26, RBK20 before 2.3.5.26, RBR40 before 2.3.5.30, RBS40 before 2.3.5.30, RBK40 before 2.3.5.… |
CWE-79
Cross-site Scripting |
CVE-2019-20665 | 2024-11-21 13:39 | 2020-04-16 | Show | GitHub Exploit DB Packet Storm |
| 221259 | 8.0 |
HIGH
Adjacent |
netgear |
d7000_firmware r6220_firmware r6260_firmware r6700_firmware r6800_firmware r6900_firmware r6900p_firmware r7000_firmware r7000p_firmware r7800_firmware r7900_firmware | Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D7000v2 before 1.0.0.53, R6220 before 1.1.0.80, R6260 before 1.1.0.64, R6700 before 1.0.2.6, R6700v2 b… |
CWE-77
Command Injection |
CVE-2019-20680 | 2024-11-21 13:39 | 2020-04-16 | Show | GitHub Exploit DB Packet Storm |
| 221260 | 6.0 |
MEDIUM
Local |
netgear |
fs728tlp_firmware gs105e_firmware gs105pe_firmware gs108e_firmware gs108pe_firmware gs110emx_firmware gs116e_firmware gs408epp_firmware gs724tp_firmware gs808e_firmware … |
Certain NETGEAR devices are affected by lack of access control at the function level. This affects FS728TLP before 1.0.1.26, GS105Ev2 before 1.6.0.4, GS105PE before 1.6.0.4, GS108Ev3 before 2.06.08, … |
CWE-862
Missing Authorization |
CVE-2019-20676 | 2024-11-21 13:39 | 2020-04-16 | Show | GitHub Exploit DB Packet Storm |