|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 27, 2026, 2:01 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 228841 | 4.3 | 警告 | Zenphoto | - | Zenphoto の function.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-6925 | 2012-12-20 19:10 | 2009-08-10 | Show | GitHub Exploit DB Packet Storm |
| 228842 | 9.3 | 危険 | Youngzsoft | - | CMailServer の CMailCOM.dll におけるスタックベースのバッファーオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2008-6922 | 2012-12-20 19:10 | 2009-08-10 | Show | GitHub Exploit DB Packet Storm |
| 228843 | 7.5 | 危険 | w2b | - | phpAdBoard の index.php における任意のコードを実行される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-6921 | 2012-12-20 19:10 | 2009-08-10 | Show | GitHub Exploit DB Packet Storm |
| 228844 | 7.5 | 危険 | w2b | - | phpEmployment の auth.php における任意のコードを実行される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-6920 | 2012-12-20 19:10 | 2009-08-10 | Show | GitHub Exploit DB Packet Storm |
| 228845 | 7.5 | 危険 | taskdriver | - | profileedit.php TaskDriver における認証を回避される脆弱性 |
CWE-287
不適切な認証 |
CVE-2008-6919 | 2012-12-20 19:10 | 2009-08-10 | Show | GitHub Exploit DB Packet Storm |
| 228846 | 6.8 | 警告 | theportal2.pl | - | ThePortal2 の admin/galeria.php における任意の PHP コードを実行される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-6918 | 2012-12-20 19:10 | 2009-08-10 | Show | GitHub Exploit DB Packet Storm |
| 228847 | 4.3 | 警告 | zeeways | - | Zeeways ZEEPROPERTY の view_prop_details.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-6915 | 2012-12-20 19:10 | 2009-08-7 | Show | GitHub Exploit DB Packet Storm |
| 228848 | 6.5 | 警告 | zeeways | - | Zeeways ZEEPROPERTY の viewprofile.php における任意のコードを実行される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-6914 | 2012-12-20 19:10 | 2009-08-7 | Show | GitHub Exploit DB Packet Storm |
| 228849 | 6.5 | 警告 | zeeways | - | Zeeways ZEEJOBSITE の editresume_next.php における任意のコードを実行される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2008-6913 | 2012-12-20 19:10 | 2009-08-7 | Show | GitHub Exploit DB Packet Storm |
| 228850 | 7.5 | 危険 | zeeways | - | Zeeways SHAADICLONE における認証を回避される脆弱性 |
CWE-287
不適切な認証 |
CVE-2008-6912 | 2012-12-20 19:10 | 2009-08-7 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 27, 2026, 4:52 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 208301 | 9.8 |
CRITICAL
Network |
74cms | 74cms | SQL Injection in 74cms 3.2.0 via the key parameter to plus/ajax_street.php. |
CWE-89
SQL Injection |
CVE-2020-22211 | 2024-11-21 14:13 | 2021-06-17 | Show | GitHub Exploit DB Packet Storm |
| 208302 | 9.8 |
CRITICAL
Network |
74cms | 74cms | SQL Injection in 74cms 3.2.0 via the x parameter to ajax_officebuilding.php. |
CWE-89
SQL Injection |
CVE-2020-22210 | 2024-11-21 14:13 | 2021-06-17 | Show | GitHub Exploit DB Packet Storm |
| 208303 | 9.8 |
CRITICAL
Network |
74cms | 74cms | SQL Injection in 74cms 3.2.0 via the query parameter to plus/ajax_common.php. |
CWE-89
SQL Injection |
CVE-2020-22209 | 2024-11-21 14:13 | 2021-06-17 | Show | GitHub Exploit DB Packet Storm |
| 208304 | 9.8 |
CRITICAL
Network |
74cms | 74cms | SQL Injection in 74cms 3.2.0 via the x parameter to plus/ajax_street.php. |
CWE-89
SQL Injection |
CVE-2020-22208 | 2024-11-21 14:13 | 2021-06-17 | Show | GitHub Exploit DB Packet Storm |
| 208305 | 9.8 |
CRITICAL
Network |
shopex | ecshop | SQL Injection in ECShop 3.0 via the aid parameter to admin/affiliate_ck.php. |
CWE-89
SQL Injection |
CVE-2020-22206 | 2024-11-21 14:13 | 2021-06-17 | Show | GitHub Exploit DB Packet Storm |
| 208306 | 9.8 |
CRITICAL
Network |
shopex | ecshop | SQL Injection in ECShop 3.0 via the id parameter to admin/shophelp.php. |
CWE-89
SQL Injection |
CVE-2020-22205 | 2024-11-21 14:13 | 2021-06-17 | Show | GitHub Exploit DB Packet Storm |
| 208307 | 9.8 |
CRITICAL
Network |
shopex | ecshop | SQL Injection in ECShop 2.7.6 via the goods_number parameter to flow.php. . |
CWE-89
SQL Injection |
CVE-2020-22204 | 2024-11-21 14:13 | 2021-06-17 | Show | GitHub Exploit DB Packet Storm |
| 208308 | 9.8 |
CRITICAL
Network |
phpcms | phpcms | SQL Injection in phpCMS 2008 sp4 via the genre parameter to yp/job.php. |
CWE-89
SQL Injection |
CVE-2020-22203 | 2024-11-21 14:13 | 2021-06-17 | Show | GitHub Exploit DB Packet Storm |
| 208309 | 8.8 |
HIGH
Network |
phpcms | phpcms | phpCMS 2008 sp4 allowas remote malicious users to execute arbitrary php commands via the pagesize parameter to yp/product.php. |
CWE-94
Code Injection |
CVE-2020-22201 | 2024-11-21 14:13 | 2021-06-17 | Show | GitHub Exploit DB Packet Storm |
| 208310 | 5.3 |
MEDIUM
Network |
phpcms | phpcms | Directory Traversal vulnerability in phpCMS 9.1.13 via the q parameter to public_get_suggest_keyword. |
CWE-22
Path Traversal |
CVE-2020-22200 | 2024-11-21 14:13 | 2021-06-17 | Show | GitHub Exploit DB Packet Storm |