|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 3, 2026, noon
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 229291 | 7.5 | 危険 | yarck | - | SH-News の action.php における認証を回避される脆弱性 |
CWE-287
不適切な認証 |
CVE-2008-6664 | 2012-12-20 19:10 | 2009-04-8 | Show | GitHub Exploit DB Packet Storm |
| 229292 | 7.5 | 危険 | phpauctions | - | PHPAuctions.info PHPAuctions の profile.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-6663 | 2012-12-20 19:10 | 2009-04-8 | Show | GitHub Exploit DB Packet Storm |
| 229293 | 4.3 | 警告 | structum | - | InfoBiz Server の search_results.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-6654 | 2012-12-20 19:10 | 2009-04-7 | Show | GitHub Exploit DB Packet Storm |
| 229294 | 7.5 | 危険 | wh-com | - | Joomla! および Mambo 用の webhosting.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-6653 | 2012-12-20 19:10 | 2009-04-7 | Show | GitHub Exploit DB Packet Storm |
| 229295 | 8.8 | 危険 | versalsoft | - | Versalsoft HTTP Image Uploader ActiveX コントロールにおける任意のファイルを削除される脆弱性 |
CWE-16
環境設定 |
CVE-2008-6638 | 2012-12-20 19:10 | 2009-04-7 | Show | GitHub Exploit DB Packet Storm |
| 229296 | 7.8 | 危険 | TYPO3 Association | - | TYPO3 用の wt_gallery エクステンションにおけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2008-6630 | 2012-12-20 19:10 | 2009-04-7 | Show | GitHub Exploit DB Packet Storm |
| 229297 | 4.3 | 警告 | webbdomain | - | WEBBDOMAIN Multi Languages WebShop Online の detail.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-6629 | 2012-12-20 19:10 | 2009-04-6 | Show | GitHub Exploit DB Packet Storm |
| 229298 | 7.5 | 危険 | webbdomain | - | WEBBDOMAIN WebShop の getin.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-6627 | 2012-12-20 19:10 | 2009-04-6 | Show | GitHub Exploit DB Packet Storm |
| 229299 | 7.5 | 危険 | webbdomain | - | WEBBDOMAIN Quiz の getin.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-6626 | 2012-12-20 19:10 | 2009-04-6 | Show | GitHub Exploit DB Packet Storm |
| 229300 | 7.5 | 危険 | webbdomain | - | WEBBDOMAIN Polls の getin.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-6625 | 2012-12-20 19:10 | 2009-04-6 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 3, 2026, 4:18 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 221281 | 7.8 |
HIGH
Local |
f5 |
big-ip_local_traffic_manager big-ip_advanced_firewall_manager big-ip_application_acceleration_manager big-ip_analytics big-ip_access_policy_manager big-ip_application_security_manager<… |
On BIG-IP versions 15.0.0-15.0.1.1, 14.1.0-14.1.2.2, 14.0.0-14.0.1, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, users with access to edit iRules are able to create iRules which can lead to a… |
CWE-269
Improper Privilege Management |
CVE-2019-6685 | 2024-11-21 13:46 | 2019-12-24 | Show | GitHub Exploit DB Packet Storm |
| 221282 | 7.5 |
HIGH
Network |
f5 |
big-ip_local_traffic_manager big-ip_advanced_firewall_manager big-ip_application_acceleration_manager big-ip_analytics big-ip_access_policy_manager big-ip_application_security_manager<… |
On versions 15.0.0-15.0.1.1, 14.0.0-14.1.2.2, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, under certain conditions, a multi-bladed BIG-IP Virtual Clustered Multiprocessing (vCMP) may drop br… |
NVD-CWE-noinfo
|
CVE-2019-6684 | 2024-11-21 13:46 | 2019-12-24 | Show | GitHub Exploit DB Packet Storm |
| 221283 | 7.5 |
HIGH
Network |
f5 |
big-ip_local_traffic_manager big-ip_advanced_firewall_manager big-ip_application_acceleration_manager big-ip_analytics big-ip_access_policy_manager big-ip_application_security_manager<… |
On versions 15.0.0-15.0.1.1, 14.1.0-14.1.2.2, 14.0.0-14.0.1, 13.1.0-13.1.3.2, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, BIG-IP virtual servers with Loose Initiation enabled on a FastL4 profile may be subje… |
CWE-400
Uncontrolled Resource Consumption |
CVE-2019-6683 | 2024-11-21 13:46 | 2019-12-24 | Show | GitHub Exploit DB Packet Storm |
| 221284 | 7.5 |
HIGH
Network |
f5 |
big-ip_local_traffic_manager big-ip_advanced_firewall_manager big-ip_application_acceleration_manager big-ip_analytics big-ip_access_policy_manager big-ip_application_security_manager<… |
On BIG-IP versions 15.0.0-15.0.1, 14.1.0-14.1.2, 14.0.0-14.0.1, 13.1.0-13.1.3.2, 12.1.0-12.1.5, and 11.5.2-11.6.5, while processing traffic through a standard virtual server that targets a FastL4 vir… |
NVD-CWE-noinfo
|
CVE-2019-6680 | 2024-11-21 13:46 | 2019-12-24 | Show | GitHub Exploit DB Packet Storm |
| 221285 | 3.3 |
LOW
Local |
f5 |
big-ip_local_traffic_manager big-ip_application_acceleration_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_access_policy_manager big-ip_application_security_manager<… |
On BIG-IP versions 15.0.0-15.0.1, 14.1.0.2-14.1.2.2, 14.0.0.5-14.0.1, 13.1.1.5-13.1.3.1, 12.1.4.1-12.1.5, 11.6.4-11.6.5, and 11.5.9-11.5.10, the access controls implemented by scp.whitelist and scp.b… |
CWE-59
Link Following |
CVE-2019-6679 | 2024-11-21 13:46 | 2019-12-24 | Show | GitHub Exploit DB Packet Storm |
| 221286 | 7.5 |
HIGH
Network |
f5 | big-ip_application_security_manager | On versions 15.0.0-15.0.1.1, 14.0.0-14.1.2.2, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.5.2-11.6.5.1, the BIG-IP ASM system may consume excessive resources when processing certain types of HTTP response… |
CWE-400
Uncontrolled Resource Consumption |
CVE-2019-6682 | 2024-11-21 13:46 | 2019-12-24 | Show | GitHub Exploit DB Packet Storm |
| 221287 | 5.3 |
MEDIUM
Network |
f5 |
big-ip_access_policy_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_application_acceleration_manager big-ip_application_security_manager big-ip_domain_name_system … |
On BIG-IP versions 15.0.0-15.0.1, 14.1.0-14.1.2.2, 14.0.0-14.0.1, and 13.1.0-13.1.3.1, the TMM process may restart when the packet filter feature is enabled. |
NVD-CWE-noinfo
|
CVE-2019-6678 | 2024-11-21 13:46 | 2019-12-24 | Show | GitHub Exploit DB Packet Storm |
| 221288 | 7.5 |
HIGH
Network |
f5 |
big-ip_local_traffic_manager big-ip_advanced_firewall_manager big-ip_application_acceleration_manager big-ip_analytics big-ip_access_policy_manager big-ip_application_security_manager<… |
On BIG-IP versions 15.0.0-15.0.1, 14.1.0-14.1.2, 14.0.0-14.0.1, 13.1.0-13.1.3.1, and 12.1.0-12.1.5, under certain conditions when using custom TCP congestion control settings in a TCP profile, TMM st… |
NVD-CWE-noinfo
|
CVE-2019-6677 | 2024-11-21 13:46 | 2019-12-24 | Show | GitHub Exploit DB Packet Storm |
| 221289 | 7.5 |
HIGH
Network |
f5 |
big-ip_local_traffic_manager big-ip_application_acceleration_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_access_policy_manager big-ip_application_security_manager<… |
On versions 15.0.0-15.0.1, 14.0.0-14.1.2.2, and 13.1.0-13.1.3.1, TMM may restart on BIG-IP Virtual Edition (VE) when using virtio direct descriptors and packets 2 KB or larger. |
NVD-CWE-noinfo
|
CVE-2019-6676 | 2024-11-21 13:46 | 2019-12-24 | Show | GitHub Exploit DB Packet Storm |
| 221290 | 7.8 |
HIGH
Local |
apple | mac_os_x | This issue was addressed with improved handling of file metadata. This issue is fixed in macOS Mojave 10.14.4. A malicious application may bypass Gatekeeper checks. |
NVD-CWE-noinfo
|
CVE-2019-6239 | 2024-11-21 13:46 | 2019-12-19 | Show | GitHub Exploit DB Packet Storm |