|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 13, 2026, 4 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 228971 | 5 | 警告 | Apache Software Foundation | - | Apache Commons Compress および Apache Ant におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-310
暗号の問題 |
CVE-2012-2098 | 2013-01-25 16:52 | 2012-05-23 | Show | GitHub Exploit DB Packet Storm |
| 228972 | 4.3 | 警告 | Elefant CMS | - | Elefant CMS の apps/admin/handlers/versions.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-6521 | 2013-01-25 14:34 | 2013-01-24 | Show | GitHub Exploit DB Packet Storm |
| 228973 | 7.5 | 危険 | Cenango Financial LLC | - | WikidForum の advanced search における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2012-6520 | 2013-01-25 14:33 | 2013-01-24 | Show | GitHub Exploit DB Packet Storm |
| 228974 | 7.5 | 危険 | diy-cms | - | DIY-CMS の modules/poll/index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2012-6519 | 2013-01-25 14:33 | 2013-01-24 | Show | GitHub Exploit DB Packet Storm |
| 228975 | 6.8 | 警告 | diy-cms | - | DiY-CMS の mod.php におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2012-6518 | 2013-01-25 14:32 | 2013-01-24 | Show | GitHub Exploit DB Packet Storm |
| 228976 | 4.3 | 警告 | diy-cms | - | DiY-CMS におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-6517 | 2013-01-25 14:31 | 2013-01-24 | Show | GitHub Exploit DB Packet Storm |
| 228977 | 7.5 | 危険 | Shawn Bradley | - | PHP Ticket System における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2012-6516 | 2013-01-25 14:30 | 2013-01-24 | Show | GitHub Exploit DB Packet Storm |
| 228978 | 5 | 警告 | eFront Learning | - | eFront における重要な情報を取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2012-6515 | 2013-01-25 14:30 | 2013-01-24 | Show | GitHub Exploit DB Packet Storm |
| 228979 | 4.3 | 警告 | Netshine Software | - | Joomla! 用 nBill コンポーネントにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-6514 | 2013-01-25 14:28 | 2013-01-24 | Show | GitHub Exploit DB Packet Storm |
| 228980 | 4.3 | 警告 | gpEasy | - | gpEasy CMS の index.php/Admin_Preferences におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-6513 | 2013-01-25 14:28 | 2013-01-24 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 13, 2026, 4:20 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 194611 | 5.4 |
MEDIUM
Network |
ovidentia | ovidentia | Ovidentia CMS 6.x contains a SQL injection vulnerability in the "id" parameter of index.php. The "checkbox" property into "text" data can be extracted and displayed in the text region or in source co… |
CWE-89
SQL Injection |
CVE-2021-29343 | 2024-11-21 15:00 | 2021-03-30 | Show | GitHub Exploit DB Packet Storm |
| 194612 | 5.4 |
MEDIUM
Network |
cmsmadesimple | cms_made_simple | CMS Made Simple (CMSMS) 2.2.15 allows authenticated XSS via the /admin/addbookmark.php script through the Site Admin > My Preferences > Title field. |
CWE-79
Cross-site Scripting |
CVE-2021-28935 | 2024-11-21 15:00 | 2021-03-30 | Show | GitHub Exploit DB Packet Storm |
| 194613 | 9.8 |
CRITICAL
Network |
xerox |
phaser_6510_firmware workcentre_6515_firmware versalink_b400_firmware versalink_b405_firmware versalink_b600_firmware versalink_b610_firmware versalink_b605_firmware versalink_b6… |
Xerox Phaser 6510 before 64.65.51 and 64.59.11 (Bridge), WorkCentre 6515 before 65.65.51 and 65.59.11 (Bridge), VersaLink B400 before 37.65.51 and 37.59.01 (Bridge), B405 before 38.65.51 and 38.59.01… |
CWE-120
Classic Buffer Overflow |
CVE-2021-28672 | 2024-11-21 15:00 | 2021-03-30 | Show | GitHub Exploit DB Packet Storm |
| 194614 | 9.8 |
CRITICAL
Network |
xerox |
phaser_6510_firmware workcentre_6515_firmware versalink_b400_firmware versalink_b405_firmware versalink_b600_firmware versalink_b610_firmware versalink_b605_firmware versalink_b6… |
Xerox Phaser 6510 before 64.65.51 and 64.59.11 (Bridge), WorkCentre 6515 before 65.65.51 and 65.59.11 (Bridge), VersaLink B400 before 37.65.51 and 37.59.01 (Bridge), B405 before 38.65.51 and 38.59.01… |
NVD-CWE-noinfo
|
CVE-2021-28671 | 2024-11-21 15:00 | 2021-03-30 | Show | GitHub Exploit DB Packet Storm |
| 194615 | 7.5 |
HIGH
Network |
xerox |
altalink_b8045_firmware altalink_b8055_firmware altalink_b8065_firmware altalink_b8075_firmware altalink_b8090_firmware altalink_c8030_firmware altalink_c8035_firmware altalink_c… |
Xerox AltaLink B80xx before 103.008.020.23120, C8030/C8035 before 103.001.020.23120, C8045/C8055 before 103.002.020.23120 and C8070 before 103.003.020.23120 provide the ability to set configuration a… |
CWE-862
Missing Authorization |
CVE-2021-28669 | 2024-11-21 15:00 | 2021-03-30 | Show | GitHub Exploit DB Packet Storm |
| 194616 | 9.8 |
CRITICAL
Network |
xerox |
altalink_b8045_firmware altalink_b8055_firmware altalink_b8065_firmware altalink_b8075_firmware altalink_b8090_firmware altalink_c8030_firmware altalink_c8035_firmware altalink_c… |
Xerox AltaLink B80xx before 103.008.020.23120, C8030/C8035 before 103.001.020.23120, C8045/C8055 before 103.002.020.23120 and C8070 before 103.003.020.23120 has several SQL injection vulnerabilities. |
CWE-89
SQL Injection |
CVE-2021-28668 | 2024-11-21 15:00 | 2021-03-30 | Show | GitHub Exploit DB Packet Storm |
| 194617 | 9.8 |
CRITICAL
Network |
xerox |
phaser_6510_firmware workcentre_6515_firmware versalink_b400_firmware versalink_b405_firmware versalink_b600_firmware versalink_b610_firmware versalink_b605_firmware versalink_b6… |
Xerox Phaser 6510 before 64.61.23 and 64.59.11 (Bridge), WorkCentre 6515 before 65.61.23 and 65.59.11 (Bridge), VersaLink B400 before 37.61.23 and 37.59.01 (Bridge), B405 before 38.61.23 and 38.59.01… |
NVD-CWE-noinfo
|
CVE-2021-28673 | 2024-11-21 15:00 | 2021-03-30 | Show | GitHub Exploit DB Packet Storm |
| 194618 | 9.1 |
CRITICAL
Network |
xerox |
altalink_b8045_firmware altalink_b8055_firmware altalink_b8065_firmware altalink_b8075_firmware altalink_b8090_firmware altalink_c8030_firmware altalink_c8035_firmware altalink_c… |
Xerox AltaLink B8045/B8090 before 103.008.030.32000, C8030/C8035 before 103.001.030.32000, C8045/C8055 before 103.002.030.32000 and C8070 before 103.003.030.32000 allow unauthorized users, by leverag… |
NVD-CWE-noinfo
|
CVE-2021-28670 | 2024-11-21 15:00 | 2021-03-30 | Show | GitHub Exploit DB Packet Storm |
| 194619 | 6.1 |
MEDIUM
Network |
sherlockim | sherlockim | Sherlock SherlockIM through 2021-03-29 allows Cross Site Scripting (XSS) by leveraging the api/Files/Attachment URI to attack help-desk staff via the chatbot feature. |
CWE-79
Cross-site Scripting |
CVE-2021-29267 | 2024-11-21 15:00 | 2021-03-30 | Show | GitHub Exploit DB Packet Storm |
| 194620 | 7.5 |
HIGH
Network |
acexy | wireless-n_wifi_repeater_firmware | The /password.html page of the Web management interface of the Acexy Wireless-N WiFi Repeater REV 1.0 (28.08.06.1) contains the administrator account password in plaintext. The page can be intercepte… |
CWE-312
Cleartext Storage of Sensitive Information |
CVE-2021-28937 | 2024-11-21 15:00 | 2021-03-29 | Show | GitHub Exploit DB Packet Storm |