|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 2, 2026, noon
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 229211 | 7.5 | 危険 | xigla | - | Xigla Software Absolute FAQ Manager.NET における認証を回避される脆弱性 |
CWE-287
不適切な認証 |
CVE-2008-6854 | 2012-12-20 19:10 | 2009-07-14 | Show | GitHub Exploit DB Packet Storm |
| 229212 | 4.3 | 警告 | PHP-Fusion | - | PHP-Fusion の messages.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-6850 | 2012-12-20 19:10 | 2009-07-7 | Show | GitHub Exploit DB Packet Storm |
| 229213 | 6.8 | 警告 | w2b | - | phpGreetCards の index.php における任意の PHP コードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2008-6849 | 2012-12-20 19:10 | 2009-07-7 | Show | GitHub Exploit DB Packet Storm |
| 229214 | 4.3 | 警告 | w2b | - | phpGreetCards の index.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-6848 | 2012-12-20 19:10 | 2009-07-7 | Show | GitHub Exploit DB Packet Storm |
| 229215 | 4.3 | 警告 | PreProject.com | - | Pre ASP Job Board の Employee/emp_login.asp におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-6847 | 2012-12-20 19:10 | 2009-07-2 | Show | GitHub Exploit DB Packet Storm |
| 229216 | 6.8 | 警告 | Pluck CMS | - | Pluck の data/modules/blog/module_pages_site.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2008-6842 | 2012-12-20 19:10 | 2009-07-2 | Show | GitHub Exploit DB Packet Storm |
| 229217 | 4.3 | 警告 | tgs-cms | - | TGS Content Management におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-6839 | 2012-12-20 19:10 | 2009-06-27 | Show | GitHub Exploit DB Packet Storm |
| 229218 | 4.3 | 警告 | Zoph | - | Zoph の search.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-6838 | 2012-12-20 19:10 | 2009-06-27 | Show | GitHub Exploit DB Packet Storm |
| 229219 | 7.5 | 危険 | Zoph | - | Zoph における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-6837 | 2012-12-20 19:10 | 2009-06-27 | Show | GitHub Exploit DB Packet Storm |
| 229220 | 5 | 警告 | vicftps | - | VicFTPS におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2008-6829 | 2012-12-20 19:10 | 2009-06-8 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 2, 2026, 4:18 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 221141 | 9.8 |
CRITICAL
Network |
salesagility | suitecrm | SuiteCRM before 7.8.28, 7.9.x and 7.10.x before 7.10.15, and 7.11.x before 7.11.3 allows SQL Injection. |
CWE-89
SQL Injection |
CVE-2019-6506 | 2024-11-21 13:46 | 2019-04-3 | Show | GitHub Exploit DB Packet Storm |
| 221142 | 8.1 |
HIGH
Network |
kunbus | pr100088_modbus_gateway_firmware | An attacker could retrieve passwords from a HTTP GET request from the Kunbus PR100088 Modbus gateway versions prior to Release R02 (or Software Version 1.1.13166) if the attacker is in an MITM positi… |
NVD-CWE-Other
|
CVE-2019-6531 | 2024-11-21 13:46 | 2019-04-3 | Show | GitHub Exploit DB Packet Storm |
| 221143 | 7.5 |
HIGH
Network |
abine | blur | Abine Blur 7.8.2431 allows remote attackers to conduct "Second-Factor Auth Bypass" attacks by using the "Perform a right-click operation to access a forgotten dev menu to insert user passwords that o… |
CWE-287
Improper Authentication |
CVE-2019-6481 | 2024-11-21 13:46 | 2019-03-29 | Show | GitHub Exploit DB Packet Storm |
| 221144 | 6.8 |
MEDIUM
Network |
f5 | big-ip_application_security_manager | On BIG-IP ASM 11.5.1-11.5.8, 11.6.1-11.6.3, 12.1.0-12.1.3, 13.0.0-13.1.1.3, and 14.0.0-14.0.0.2, there is a stored cross-site scripting vulnerability in an ASM violation viewed in the Configuration u… |
CWE-352
Origin Validation Error |
CVE-2019-6607 | 2024-11-21 13:46 | 2019-03-29 | Show | GitHub Exploit DB Packet Storm |
| 221145 | 5.9 |
MEDIUM
Network |
f5 |
big-ip_access_policy_manager big-ip_advanced_firewall_manager big-ip_application_acceleration_manager big-ip_edge_gateway big-ip_fraud_protection_service big-ip_global_traffic_manager<… |
On BIG-IP 11.5.1-11.6.3, 12.1.0-12.1.3, 13.0.0-13.1.1.1, and 14.0.0-14.0.0.2, under certain conditions, the snmpd daemon may leak memory on a multi-blade BIG-IP vCMP guest when processing authorized … |
CWE-401
Missing Release of Memory after Effective Lifetime |
CVE-2019-6608 | 2024-11-21 13:46 | 2019-03-29 | Show | GitHub Exploit DB Packet Storm |
| 221146 | 4.3 |
MEDIUM
Network |
f5 |
big-ip_access_policy_manager big-ip_advanced_firewall_manager big-ip_application_acceleration_manager big-ip_edge_gateway big-ip_fraud_protection_service big-ip_global_traffic_manager<… |
On BIG-IP 11.5.1-11.6.3.4, 12.1.0-12.1.3.7, 13.0.0-13.1.1.3, and 14.0.0-14.0.0.2, when processing certain SNMP requests with a request-id of 0, the snmpd process may leak a small amount of memory. |
CWE-401
Missing Release of Memory after Effective Lifetime |
CVE-2019-6606 | 2024-11-21 13:46 | 2019-03-29 | Show | GitHub Exploit DB Packet Storm |
| 221147 | 7.5 |
HIGH
Network |
f5 |
big-ip_access_policy_manager big-ip_advanced_firewall_manager big-ip_application_acceleration_manager big-ip_edge_gateway big-ip_fraud_protection_service big-ip_global_traffic_manager<… |
On BIG-IP 11.5.1-11.5.8, 11.6.1-11.6.3, and 12.0.x, an undisclosed sequence of packets received by an SSL virtual server and processed by an associated Client SSL or Server SSL profile may cause a de… |
NVD-CWE-noinfo
|
CVE-2019-6605 | 2024-11-21 13:46 | 2019-03-29 | Show | GitHub Exploit DB Packet Storm |
| 221148 | 6.8 |
MEDIUM
Network |
f5 |
big-ip_access_policy_manager big-ip_advanced_firewall_manager big-ip_application_acceleration_manager big-ip_edge_gateway big-ip_fraud_protection_service big-ip_global_traffic_manager<… |
On BIG-IP 11.5.1-11.5.8, 11.6.1-11.6.3, 12.1.0-12.1.3.6, 13.0.0-13.1.1.1, and 14.0.0-14.0.0.2, under certain conditions, hardware systems with a High-Speed Bridge and using non-default Layer 2 forwar… |
NVD-CWE-noinfo
|
CVE-2019-6604 | 2024-11-21 13:46 | 2019-03-29 | Show | GitHub Exploit DB Packet Storm |
| 221149 | 7.5 |
HIGH
Network |
f5 |
big-ip_access_policy_manager big-ip_advanced_firewall_manager big-ip_application_acceleration_manager big-ip_edge_gateway big-ip_fraud_protection_service big-ip_global_traffic_manager<… |
In BIG-IP 11.5.1-11.5.8, 11.6.1-11.6.3, 12.1.0-12.1.3, and 13.0.0-13.0.1, malformed TCP packets sent to a self IP address or a FastL4 virtual server may cause an interruption of service. The control … |
NVD-CWE-noinfo
|
CVE-2019-6603 | 2024-11-21 13:46 | 2019-03-29 | Show | GitHub Exploit DB Packet Storm |
| 221150 | 7.5 |
HIGH
Network |
f5 |
big-ip_application_acceleration_manager big-ip_local_traffic_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_access_policy_manager big-ip_application_security_manager<… |
In BIG-IP 11.5.1-11.5.8 and 11.6.1-11.6.3, the Configuration Utility login page may not follow best security practices when handling a malicious request. |
CWE-203
Information Exposure Through Discrepancy |
CVE-2019-6602 | 2024-11-21 13:46 | 2019-03-29 | Show | GitHub Exploit DB Packet Storm |