|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":April 29, 2026, 2 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 228971 | 7.5 | 危険 | tutti nova | - | Tutti Nova における PHP リモートファイルインクルージョンの脆弱性 | - | CVE-2006-4276 | 2012-12-20 18:02 | 2006-08-21 | Show | GitHub Exploit DB Packet Storm |
| 228972 | 3.6 | 注意 | シマンテック | - | Symantec Norton Personal Firewall におけるトロイの木馬ライプラリを追加される脆弱性 | - | CVE-2006-4266 | 2012-12-20 18:02 | 2006-08-21 | Show | GitHub Exploit DB Packet Storm |
| 228973 | 7.5 | 危険 | product scroller module | - | Mambo および Joomla! 用の mambo-phpshop における PHP リモートファイルインクルージョンの脆弱性 | - | CVE-2006-4263 | 2012-12-20 18:02 | 2006-08-21 | Show | GitHub Exploit DB Packet Storm |
| 228974 | 5 | 警告 | PowerDNS | - | PowerDNS Recursor におけるサービス運用妨害 (DoS) の脆弱性 | - | CVE-2006-4252 | 2012-12-20 18:02 | 2006-11-13 | Show | GitHub Exploit DB Packet Storm |
| 228975 | 7.5 | 危険 | PowerDNS | - | PowerDNS Recursor におけるバッファオーバーフローの脆弱性 | - | CVE-2006-4251 | 2012-12-20 18:02 | 2006-11-13 | Show | GitHub Exploit DB Packet Storm |
| 228976 | 4.3 | 警告 | Plone Foundation | - | Plone の PlonePAS における "グループを偽装される" 脆弱性 | - | CVE-2006-4249 | 2012-12-20 18:02 | 2006-11-2 | Show | GitHub Exploit DB Packet Storm |
| 228977 | 6.4 | 警告 | Plone Foundation | - | Plone の Password Reset Tool における他のユーザのパスワードをリセットされる脆弱性 | - | CVE-2006-4247 | 2012-12-20 18:02 | 2006-09-29 | Show | GitHub Exploit DB Packet Storm |
| 228978 | 7.5 | 危険 | sql-ledger | - | SQL-Ledger におけるログイン済みユーザとしてアクセス権を取得される脆弱性 |
CWE-287
不適切な認証 |
CVE-2006-4244 | 2012-12-20 18:02 | 2006-08-30 | Show | GitHub Exploit DB Packet Storm |
| 228979 | 7.5 | 危険 | wtcom | - | WTcom の torrents.php における SQL インジェクションの脆弱性 | - | CVE-2006-4238 | 2012-12-20 18:02 | 2006-08-21 | Show | GitHub Exploit DB Packet Storm |
| 228980 | 7.5 | 危険 | powergap | - | POWERGAP における PHP リモートファイルインクルージョンの脆弱性 | - | CVE-2006-4236 | 2012-12-20 18:02 | 2006-08-21 | Show | GitHub Exploit DB Packet Storm |
Update Date:April 29, 2026, 4:51 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 212811 | 8.8 |
HIGH
Network |
thinkcmf | thinkcmf | ThinkCMF 5.0.190111 allows remote attackers to execute arbitrary PHP code via the portal/admin_category/addpost.html alias parameter because the mishandling of a single quote character allows data/co… |
CWE-94
Code Injection |
CVE-2019-7580 | 2024-11-21 13:48 | 2019-02-8 | Show | GitHub Exploit DB Packet Storm |
| 212812 | 5.3 |
MEDIUM
Network |
gurock | testrail | index.php in Gurock TestRail 5.3.0.3603 returns potentially sensitive information for an invalid request, as demonstrated by full path disclosure and the identification of PHP as the backend technolo… |
CWE-200
Information Exposure |
CVE-2019-7535 | 2024-11-21 13:48 | 2019-02-8 | Show | GitHub Exploit DB Packet Storm |
| 212813 | 8.1 |
HIGH
Network |
libsdl opensuse debian fedoraproject canonical |
simple_directmedia_layer leap debian_linux fedora ubuntu_linux |
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in InitIMA_ADPCM in audio/SDL_wave.c. |
CWE-125
Out-of-bounds Read |
CVE-2019-7578 | 2024-11-21 13:48 | 2019-02-7 | Show | GitHub Exploit DB Packet Storm |
| 212814 | 8.8 |
HIGH
Network |
libsdl opensuse debian fedoraproject canonical |
simple_directmedia_layer leap debian_linux fedora ubuntu_linux |
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a buffer over-read in SDL_LoadWAV_RW in audio/SDL_wave.c. |
CWE-125
Out-of-bounds Read |
CVE-2019-7577 | 2024-11-21 13:48 | 2019-02-7 | Show | GitHub Exploit DB Packet Storm |
| 212815 | 8.8 |
HIGH
Network |
libsdl debian opensuse fedoraproject canonical |
simple_directmedia_layer debian_linux leap fedora ubuntu_linux |
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in InitMS_ADPCM in audio/SDL_wave.c (outside the wNumCoef loop). |
CWE-125
Out-of-bounds Read |
CVE-2019-7576 | 2024-11-21 13:48 | 2019-02-7 | Show | GitHub Exploit DB Packet Storm |
| 212816 | 8.8 |
HIGH
Network |
libsdl debian opensuse fedoraproject canonical |
simple_directmedia_layer debian_linux leap fedora ubuntu_linux |
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer overflow in MS_ADPCM_decode in audio/SDL_wave.c. |
CWE-787
Out-of-bounds Write |
CVE-2019-7575 | 2024-11-21 13:48 | 2019-02-7 | Show | GitHub Exploit DB Packet Storm |
| 212817 | 8.8 |
HIGH
Network |
libsdl debian opensuse fedoraproject canonical |
simple_directmedia_layer debian_linux leap fedora ubuntu_linux |
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in IMA_ADPCM_decode in audio/SDL_wave.c. |
CWE-125
Out-of-bounds Read |
CVE-2019-7574 | 2024-11-21 13:48 | 2019-02-7 | Show | GitHub Exploit DB Packet Storm |
| 212818 | 8.8 |
HIGH
Network |
libsdl debian opensuse fedoraproject canonical |
simple_directmedia_layer debian_linux leap fedora ubuntu_linux |
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in InitMS_ADPCM in audio/SDL_wave.c (inside the wNumCoef loop). |
CWE-125
Out-of-bounds Read |
CVE-2019-7573 | 2024-11-21 13:48 | 2019-02-7 | Show | GitHub Exploit DB Packet Storm |
| 212819 | 8.8 |
HIGH
Network |
libsdl debian opensuse canonical fedoraproject |
simple_directmedia_layer debian_linux leap ubuntu_linux fedora |
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a buffer over-read in IMA_ADPCM_nibble in audio/SDL_wave.c. |
CWE-125
Out-of-bounds Read |
CVE-2019-7572 | 2024-11-21 13:48 | 2019-02-7 | Show | GitHub Exploit DB Packet Storm |
| 212820 | 6.5 |
MEDIUM
Network |
pbootcms | pbootcms | A CSRF vulnerability was found in PbootCMS v1.3.6 that can delete users via an admin.php/User/del/ucode/ URI. |
CWE-352
Origin Validation Error |
CVE-2019-7570 | 2024-11-21 13:48 | 2019-02-7 | Show | GitHub Exploit DB Packet Storm |