|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 3, 2026, 6:08 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 229411 | 5 | 警告 | WeBid Support | - | WeBid auction script における SQL クエリログを取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-7118 | 2012-12-20 19:10 | 2009-08-28 | Show | GitHub Exploit DB Packet Storm |
| 229412 | 5 | 警告 | WeBid Support | - | WeBid auction script の eledicss.php における任意のカスケードスタイルシートファイル (CSS) を変更される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-7117 | 2012-12-20 19:10 | 2009-08-28 | Show | GitHub Exploit DB Packet Storm |
| 229413 | 7.5 | 危険 | WeBid Support | - | WeBid auction script の admin panel における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-7116 | 2012-12-20 19:10 | 2009-08-28 | Show | GitHub Exploit DB Packet Storm |
| 229414 | 4.3 | 警告 | phpcart | - | Carmosa phpCart におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-7108 | 2012-12-20 19:10 | 2009-08-28 | Show | GitHub Exploit DB Packet Storm |
| 229415 | 5 | 警告 | ソフォス | - | Microsoft Exchange 用の Sophos PureMessage におけるスキャン保護のリモート回避をされる脆弱性 |
CWE-Other
その他 |
CVE-2008-7106 | 2012-12-20 19:10 | 2009-08-27 | Show | GitHub Exploit DB Packet Storm |
| 229416 | 5 | 警告 | ソフォス | - | Microsoft Exchange 用の Sophos PureMessage におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-Other
その他 |
CVE-2008-7105 | 2012-12-20 19:10 | 2009-08-27 | Show | GitHub Exploit DB Packet Storm |
| 229417 | 5 | 警告 | ソフォス | - | Microsoft Exchange 用の PureMessage におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-Other
その他 |
CVE-2008-7104 | 2012-12-20 19:10 | 2009-08-27 | Show | GitHub Exploit DB Packet Storm |
| 229418 | 6.8 | 警告 | qsoft-inc | - | Qsoft K-Rate Premium の Manage Templates 機能における任意の PHP コードを実行される脆弱性 |
CWE-noinfo
情報不足 |
CVE-2008-7099 | 2012-12-20 19:10 | 2009-08-27 | Show | GitHub Exploit DB Packet Storm |
| 229419 | 4.3 | 警告 | qsoft-inc | - | Qsoft K-Rate Premium におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-7098 | 2012-12-20 19:10 | 2009-08-27 | Show | GitHub Exploit DB Packet Storm |
| 229420 | 7.5 | 危険 | qsoft-inc | - | Qsoft K-Rate Premium における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-7097 | 2012-12-20 19:10 | 2009-08-27 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 3, 2026, 4:18 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 3631 | 8.1 |
HIGH
Network |
- | - | in OpenHarmony v6.0 and prior versions allow a remote attacker arbitrary code execution in pre-installed apps. |
CWE-364
Signal Handler Race Condition |
CVE-2026-24792 | 2026-05-19 23:25 | 2026-05-19 | Show | GitHub Exploit DB Packet Storm |
| 3632 | 3.3 |
LOW
Local |
- | - | in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS. |
CWE-476
NULL Pointer Dereference |
CVE-2026-25110 | 2026-05-19 23:25 | 2026-05-19 | Show | GitHub Exploit DB Packet Storm |
| 3633 | 8.4 |
HIGH
Local |
- | - | in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS and it cannot be recovered. |
CWE-787
Out-of-bounds Write |
CVE-2026-25781 | 2026-05-19 23:25 | 2026-05-19 | Show | GitHub Exploit DB Packet Storm |
| 3634 | 5.5 |
MEDIUM
Local |
- | - | in OpenHarmony v6.0 and prior versions allow a local attacker cause information leak |
CWE-281
Improper Preservation of Permissions |
CVE-2026-25850 | 2026-05-19 23:25 | 2026-05-19 | Show | GitHub Exploit DB Packet Storm |
| 3635 | 8.8 |
HIGH
Network |
- | - | in OpenHarmony v6.0 and prior versions allow a remote attacker arbitrary code execution in pre-installed apps. |
CWE-787
Out-of-bounds Write |
CVE-2026-27648 | 2026-05-19 23:25 | 2026-05-19 | Show | GitHub Exploit DB Packet Storm |
| 3636 | 5.5 |
MEDIUM
Local |
- | - | in OpenHarmony v6.0 and prior versions allow a local attacker cause information leak. |
CWE-364
Signal Handler Race Condition |
CVE-2026-27766 | 2026-05-19 23:25 | 2026-05-19 | Show | GitHub Exploit DB Packet Storm |
| 3637 | 3.3 |
LOW
Local |
- | - | in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS. |
CWE-190
Integer Overflow or Wraparound |
CVE-2026-27781 | 2026-05-19 23:25 | 2026-05-19 | Show | GitHub Exploit DB Packet Storm |
| 3638 | 6.5 |
MEDIUM
Local |
- | - | in OpenHarmony v6.0 and prior versions allow a local attacker arbitrary code execution. |
CWE-416
Use After Free |
CVE-2026-28733 | 2026-05-19 23:25 | 2026-05-19 | Show | GitHub Exploit DB Packet Storm |
| 3639 | 3.3 |
LOW
Local |
- | - | in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS. |
CWE-20
Improper Input Validation |
CVE-2026-28751 | 2026-05-19 23:25 | 2026-05-19 | Show | GitHub Exploit DB Packet Storm |
| 3640 | 3.3 |
LOW
Local |
- | - | in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS. |
CWE-364
Signal Handler Race Condition |
CVE-2026-33565 | 2026-05-19 23:25 | 2026-05-19 | Show | GitHub Exploit DB Packet Storm |