|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 6, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 228571 | 5 | 警告 | EFS Software | - | EFS Web Server の thumbnail.ghp におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-4809 | 2012-12-20 19:28 | 2010-04-23 | Show | GitHub Exploit DB Packet Storm |
| 228572 | 6.8 | 警告 | will kraft | - | EZ-Blog における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4805 | 2012-12-20 19:28 | 2010-04-23 | Show | GitHub Exploit DB Packet Storm |
| 228573 | 7.5 | 危険 | will kraft | - | EZ-Blog における任意の投稿を作成される脆弱性 |
CWE-287
不適切な認証 |
CVE-2009-4801 | 2012-12-20 19:28 | 2010-04-23 | Show | GitHub Exploit DB Packet Storm |
| 228574 | 4 | 警告 | Codeorigin | - | Sysax Multi Server におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-4800 | 2012-12-20 19:28 | 2010-04-22 | Show | GitHub Exploit DB Packet Storm |
| 228575 | 6.8 | 警告 | xlightftpd | - | Xlight FTP Server における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4795 | 2012-12-20 19:28 | 2010-04-22 | Show | GitHub Exploit DB Packet Storm |
| 228576 | 7.5 | 危険 | ryan haudenschilt | - | Family Connections における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4791 | 2012-12-20 19:28 | 2010-04-22 | Show | GitHub Exploit DB Packet Storm |
| 228577 | 5 | 警告 | XOOPS | - | XOOPS の Profiles モジュールにおける管理者による承認を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-4851 | 2012-12-20 19:28 | 2009-11-11 | Show | GitHub Exploit DB Packet Storm |
| 228578 | 7.5 | 危険 | phplivesupport | - | PHP Live! における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4749 | 2012-12-20 19:28 | 2010-03-26 | Show | GitHub Exploit DB Packet Storm |
| 228579 | 7.5 | 危険 | Tecnick.com | - | AIOCP の public/code/cp_html2xhtmlbasic.php における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-4747 | 2012-12-20 19:28 | 2010-03-26 | Show | GitHub Exploit DB Packet Storm |
| 228580 | 10 | 危険 | Skype Technologies S.A. | - | Windows 上で稼動する Skype の Extras Manager における脆弱性 |
CWE-noinfo
情報不足 |
CVE-2009-4741 | 2012-12-20 19:28 | 2010-03-26 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 7, 2026, 4:13 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 194541 | 9.0 |
CRITICAL
Network |
synology |
diskstation_manager vs960hd_firmware skynas_firmware diskstation_manager_unified_controller |
Insertion of sensitive information into sent data vulnerability in synorelayd in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows man-in-the-middle attackers to execute arbitrary comman… |
CWE-200
Information Exposure |
CVE-2021-26566 | 2024-11-21 14:56 | 2021-02-27 | Show | GitHub Exploit DB Packet Storm |
| 194542 | 5.9 |
MEDIUM
Network |
synology |
diskstation_manager vs960hd_firmware skynas_firmware diskstation_manager_unified_controller |
Cleartext transmission of sensitive information vulnerability in synorelayd in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows man-in-the-middle attackers to obtain sensitive informati… |
CWE-319
Cleartext Transmission of Sensitive Information |
CVE-2021-26565 | 2024-11-21 14:56 | 2021-02-27 | Show | GitHub Exploit DB Packet Storm |
| 194543 | 8.7 |
HIGH
Network |
synology |
diskstation_manager vs960hd_firmware skynas_firmware diskstation_manager_unified_controller |
Cleartext transmission of sensitive information vulnerability in synorelayd in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows man-in-the-middle attackers to spoof servers via an HTTP … |
CWE-319
Cleartext Transmission of Sensitive Information |
CVE-2021-26564 | 2024-11-21 14:56 | 2021-02-27 | Show | GitHub Exploit DB Packet Storm |
| 194544 | 6.7 |
MEDIUM
Local |
synology |
diskstation_manager vs960hd_firmware skynas_firmware diskstation_manager_unified_controller |
Incorrect authorization vulnerability in synoagentregisterd in Synology DiskStation Manager (DSM) before 6.2.4-25553 allows local users to execute arbitrary code via unspecified vectors. | - | CVE-2021-26563 | 2024-11-21 14:56 | 2021-02-27 | Show | GitHub Exploit DB Packet Storm |
| 194545 | 8.1 |
HIGH
Network |
synology |
diskstation_manager vs960hd_firmware skynas_firmware diskstation_manager_unified_controller |
Out-of-bounds write vulnerability in synoagentregisterd in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows man-in-the-middle attackers to execute arbitrary code via syno_finder_site HT… |
CWE-787
Out-of-bounds Write |
CVE-2021-26562 | 2024-11-21 14:56 | 2021-02-27 | Show | GitHub Exploit DB Packet Storm |
| 194546 | 8.1 |
HIGH
Network |
synology |
diskstation_manager vs960hd_firmware skynas_firmware diskstation_manager_unified_controller |
Stack-based buffer overflow vulnerability in synoagentregisterd in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows man-in-the-middle attackers to execute arbitrary code via syno_finder… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2021-26561 | 2024-11-21 14:56 | 2021-02-27 | Show | GitHub Exploit DB Packet Storm |
| 194547 | 7.4 |
HIGH
Network |
synology |
diskstation_manager vs960hd_firmware skynas_firmware diskstation_manager_unified_controller |
Cleartext transmission of sensitive information vulnerability in synoagentregisterd in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows man-in-the-middle attackers to spoof servers via … |
CWE-319
Cleartext Transmission of Sensitive Information |
CVE-2021-26560 | 2024-11-21 14:56 | 2021-02-27 | Show | GitHub Exploit DB Packet Storm |
| 194548 | 8.1 |
HIGH
Network |
microsoft fedoraproject |
visual_studio_2019 .net_core powershell_core .net fedora |
.NET Core Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-26701 | 2024-11-21 14:56 | 2021-02-26 | Show | GitHub Exploit DB Packet Storm |
| 194549 | 7.8 |
HIGH
Local |
microsoft | visual_studio_code_npm-script_extension | Visual Studio Code npm-script Extension Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-26700 | 2024-11-21 14:56 | 2021-02-26 | Show | GitHub Exploit DB Packet Storm |
| 194550 | 7.2 |
HIGH
Network |
arubanetworks | clearpass_policy_manager | A remote authenticated command injection vulnerability was discovered in Aruba ClearPass Policy Manager version(s): Prior to 6.9.5, 6.8.8-HF1, 6.7.14-HF1. A vulnerability in the ClearPass web-based m… |
CWE-78
OS Command |
CVE-2021-26680 | 2024-11-21 14:56 | 2021-02-24 | Show | GitHub Exploit DB Packet Storm |