|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 6, 2026, noon
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 228911 | 6.8 | 警告 | zenas | - | Zenas PaoLink の login.php における認証を回避される脆弱性 |
CWE-287
不適切な認証 |
CVE-2009-3423 | 2012-12-20 19:28 | 2009-09-25 | Show | GitHub Exploit DB Packet Storm |
| 228912 | 6.8 | 警告 | zenas | - | Zenas PaoLiber の login.php における認証を回避される脆弱性 |
CWE-287
不適切な認証 |
CVE-2009-3422 | 2012-12-20 19:28 | 2009-09-25 | Show | GitHub Exploit DB Packet Storm |
| 228913 | 6.8 | 警告 | zenas | - | Zenas PaoBacheca Guestbook の login.php における認証を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-3421 | 2012-12-20 19:28 | 2009-09-25 | Show | GitHub Exploit DB Packet Storm |
| 228914 | 6.5 | 警告 | Plume CMS | - | Plume CMS における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-3418 | 2012-12-20 19:28 | 2009-09-25 | Show | GitHub Exploit DB Packet Storm |
| 228915 | 4.3 | 警告 | Plohni | - | An image gallery におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3367 | 2012-12-20 19:28 | 2009-09-24 | Show | GitHub Exploit DB Packet Storm |
| 228916 | 5 | 警告 | Plohni | - | An image gallery の navigation.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2009-3366 | 2012-12-20 19:28 | 2009-09-24 | Show | GitHub Exploit DB Packet Storm |
| 228917 | 7.5 | 危険 | traza | - | Aurora CMS の add-ons/modules/sysmanager/plugins/install.plugin.php における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-3365 | 2012-12-20 19:28 | 2009-09-24 | Show | GitHub Exploit DB Packet Storm |
| 228918 | 4.3 | 警告 | ufku bayburt | - | Drupal 用の BUEditor モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3363 | 2012-12-20 19:28 | 2009-09-9 | Show | GitHub Exploit DB Packet Storm |
| 228919 | 7.5 | 危険 | sznews | - | SZNews の printnews.php3 における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-3362 | 2012-12-20 19:28 | 2009-09-24 | Show | GitHub Exploit DB Packet Storm |
| 228920 | 7.5 | 危険 | tourismscripts | - | Tourism Scripts Adult Portal エスコートリストの profile.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-3358 | 2012-12-20 19:28 | 2009-09-24 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 6, 2026, 4:18 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 202651 | 5.3 |
MEDIUM
Network |
schneider-electric |
modicon_m340_bmxp341000_firmware modicon_m340_bmxp342000_firmware modicon_m340_bmxp3420102_firmware modicon_m340_bmxp3420102cl_firmware modicon_m340_bmxp342020_firmware modicon_m340_bm… |
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in the Web Server on Modicon M340, Legacy Offers Modicon Quantum and Modicon Premium and associated Communication … | - | CVE-2020-7549 | 2024-11-21 14:37 | 2020-12-11 | Show | GitHub Exploit DB Packet Storm |
| 202652 | 7.5 |
HIGH
Network |
schneider-electric |
modicon_m580_bmep584040_firmware modicon_m580_bmep582040_firmware modicon_m580_bmep586040_firmware modicon_m580_bmep585040_firmware modicon_m580_bmep582020_firmware modicon_m580_bmep58… |
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Legacy Controllers Modicon Quantum & Modicon Premium (see security notifications fo… | - | CVE-2020-7543 | 2024-11-21 14:37 | 2020-12-11 | Show | GitHub Exploit DB Packet Storm |
| 202653 | 7.5 |
HIGH
Network |
schneider-electric |
modicon_m580_bmep584040_firmware modicon_m580_bmep582040_firmware modicon_m580_bmep586040_firmware modicon_m580_bmep585040_firmware modicon_m580_bmep582020_firmware modicon_m580_bmep58… |
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Legacy Controllers Modicon Quantum & Modicon Premium (see security notifications fo… | - | CVE-2020-7542 | 2024-11-21 14:37 | 2020-12-11 | Show | GitHub Exploit DB Packet Storm |
| 202654 | 5.3 |
MEDIUM
Network |
schneider-electric |
modicon_m340_bmxp341000_firmware modicon_m340_bmxp342000_firmware modicon_m340_bmxp3420102_firmware modicon_m340_bmxp3420102cl_firmware modicon_m340_bmxp342020_firmware modicon_m340_bm… |
A CWE-425: Direct Request ('Forced Browsing') vulnerability exists in the Web Server on Modicon M340, Legacy Offers Modicon Quantum and Modicon Premium and associated Communication Modules (see secur… | - | CVE-2020-7541 | 2024-11-21 14:37 | 2020-12-11 | Show | GitHub Exploit DB Packet Storm |
| 202655 | 9.8 |
CRITICAL
Network |
schneider-electric |
modicon_m340_bmxp341000_firmware modicon_m340_bmxp342000_firmware modicon_m340_bmxp3420102_firmware modicon_m340_bmxp3420102cl_firmware modicon_m340_bmxp342020_firmware modicon_m340_bm… |
A CWE-306: Missing Authentication for Critical Function vulnerability exists in the Web Server on Modicon M340, Legacy Offers Modicon Quantum and Modicon Premium and associated Communication Modules … | - | CVE-2020-7540 | 2024-11-21 14:37 | 2020-12-11 | Show | GitHub Exploit DB Packet Storm |
| 202656 | 7.5 |
HIGH
Network |
schneider-electric |
modicon_m340_bmxp341000_firmware modicon_m340_bmxp342000_firmware modicon_m340_bmxp3420102_firmware modicon_m340_bmxp3420102cl_firmware modicon_m340_bmxp342020_firmware modicon_m340_bm… |
A CWE-754 Improper Check for Unusual or Exceptional Conditions vulnerability exists in the Web Server on Modicon M340, Legacy Offers Modicon Quantum and Modicon Premium and associated Communication M… | - | CVE-2020-7539 | 2024-11-21 14:37 | 2020-12-11 | Show | GitHub Exploit DB Packet Storm |
| 202657 | 7.5 |
HIGH
Network |
schneider-electric |
modicon_m580_bmep584040_firmware modicon_m580_bmep582040_firmware modicon_m580_bmep586040_firmware modicon_m580_bmep585040_firmware modicon_m580_bmep582020_firmware modicon_m580_bmep58… |
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Legacy Controllers Modicon Quantum & Modicon Premium (see security notifications fo… | - | CVE-2020-7537 | 2024-11-21 14:37 | 2020-12-11 | Show | GitHub Exploit DB Packet Storm |
| 202658 | 7.5 |
HIGH
Network |
schneider-electric |
modicon_m340_bmxp341000_firmware modicon_m340_bmxp342000_firmware modicon_m340_bmxp3420102_firmware modicon_m340_bmxp3420102cl_firmware modicon_m340_bmxp342020_firmware modicon_m340_bm… |
A CWE-754:Improper Check for Unusual or Exceptional Conditions vulnerability exists in Modicon M340 CPUs (BMXP34* versions prior to V3.30) Modicon M340 Communication Ethernet modules (BMXNOE0100 (H) … | - | CVE-2020-7536 | 2024-11-21 14:37 | 2020-12-11 | Show | GitHub Exploit DB Packet Storm |
| 202659 | 7.5 |
HIGH
Network |
schneider-electric |
modicon_m340_bmxp341000_firmware modicon_m340_bmxp342000_firmware modicon_m340_bmxp3420102_firmware modicon_m340_bmxp3420102cl_firmware modicon_m340_bmxp342020_firmware modicon_m340_bm… |
A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal' Vulnerability Type) vulnerability exists in the Web Server on Modicon M340, Legacy Offers Modicon Quantum and M… | - | CVE-2020-7535 | 2024-11-21 14:37 | 2020-12-11 | Show | GitHub Exploit DB Packet Storm |
| 202660 | 6.3 |
MEDIUM
Adjacent |
mcafee | database_security | Use of a Broken or Risky Cryptographic Algorithm vulnerability in McAfee Database Security Server and Sensor prior to 4.8.0 in the form of a SHA1 signed certificate that would allow an attacker on th… |
CWE-327
Use of a Broken or Risky Cryptographic Algorithm |
CVE-2020-7339 | 2024-11-21 14:37 | 2020-12-10 | Show | GitHub Exploit DB Packet Storm |