|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 4, 2026, 4 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 229641 | 7.5 | 危険 | plaincart | - | PlainCart の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-6469 | 2012-12-20 19:10 | 2009-03-13 | Show | GitHub Exploit DB Packet Storm |
| 229642 | 7.5 | 危険 | TYPO3 Association | - | TYPO3 用の autobeuser エクステンションにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-6459 | 2012-12-20 19:10 | 2009-03-13 | Show | GitHub Exploit DB Packet Storm |
| 229643 | 7.5 | 危険 | walnutstreet | - | TYPO3 用の cgswigmore エクステンションにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-6457 | 2012-12-20 19:10 | 2009-03-13 | Show | GitHub Exploit DB Packet Storm |
| 229644 | 9.3 | 危険 | quiksoft | - | QuikSoft EasyMail MailStore ActiveX コントロールの emmailstore.dll におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2008-6447 | 2012-12-20 19:10 | 2009-03-9 | Show | GitHub Exploit DB Packet Storm |
| 229645 | 7.5 | 危険 | yourplace | - | YourPlace における脆弱性 |
CWE-287
不適切な認証 |
CVE-2008-6445 | 2012-12-20 19:10 | 2009-03-9 | Show | GitHub Exploit DB Packet Storm |
| 229646 | 7.5 | 危険 | phpkf | - | phpKF の forum_duzen.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-6443 | 2012-12-20 19:10 | 2009-03-9 | Show | GitHub Exploit DB Packet Storm |
| 229647 | 5.8 | 警告 | sina | - | Sina Inc. DLoader Class ActiveX コントロールにおける任意のファイルを上書きされる脆弱性 |
CWE-Other
その他 |
CVE-2008-6442 | 2012-12-20 19:10 | 2009-03-9 | Show | GitHub Exploit DB Packet Storm |
| 229648 | 4.3 | 警告 | phpsqlitecms | - | phpSQLiteCMS におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-6435 | 2012-12-20 19:10 | 2009-03-6 | Show | GitHub Exploit DB Packet Storm |
| 229649 | 7.5 | 危険 | psychostats | - | PsychoStats における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-6422 | 2012-12-20 19:10 | 2009-03-6 | Show | GitHub Exploit DB Packet Storm |
| 229650 | 7.5 | 危険 | socialsitegenerator | - | Social Site Generator の social_game_play.php における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2008-6421 | 2012-12-20 19:10 | 2009-03-6 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 4, 2026, 4:17 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 202261 | 6.1 |
MEDIUM
Network |
schneider-electric |
andover_continuum_9680_firmware andover_continuum_5740_firmware andover_continuum_5720_firmware andover_continuum_bcx4040_firmware andover_continuum_bcx9640_firmware andover_continuum_… |
A CWE-79:Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists Andover Continuum (All versions), which could cause a Reflective Cross-site Scriptin… |
CWE-79
Cross-site Scripting |
CVE-2020-7482 | 2024-11-21 14:37 | 2020-03-24 | Show | GitHub Exploit DB Packet Storm |
| 202262 | 6.1 |
MEDIUM
Network |
schneider-electric |
andover_continuum_9680_firmware andover_continuum_5740_firmware andover_continuum_5720_firmware andover_continuum_bcx4040_firmware andover_continuum_bcx9640_firmware andover_continuum_… |
A CWE-79:Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists Andover Continuum (All versions), which could enable a successful Cross-site Scripti… |
CWE-79
Cross-site Scripting |
CVE-2020-7481 | 2024-11-21 14:37 | 2020-03-24 | Show | GitHub Exploit DB Packet Storm |
| 202263 | 9.8 |
CRITICAL
Network |
schneider-electric |
andover_continuum_9680_firmware andover_continuum_5740_firmware andover_continuum_5720_firmware andover_continuum_bcx4040_firmware andover_continuum_bcx9640_firmware andover_continuum_… |
A CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability exists in Andover Continuum (All versions), which could cause files on the application server filesystem to be viewab… |
CWE-94
Code Injection |
CVE-2020-7480 | 2024-11-21 14:37 | 2020-03-24 | Show | GitHub Exploit DB Packet Storm |
| 202264 | 7.8 |
HIGH
Local |
schneider-electric | interactive_graphical_scada_system | A CWE-306: Missing Authentication for Critical Function vulnerability exists in IGSS (Versions 14 and prior using the service: IGSSupdate), which could allow a local user to execute processes that ot… |
CWE-306
Missing Authentication for Critical Function |
CVE-2020-7479 | 2024-11-21 14:37 | 2020-03-24 | Show | GitHub Exploit DB Packet Storm |
| 202265 | 7.5 |
HIGH
Network |
schneider-electric | interactive_graphical_scada_system | A CWE-22: Improper Limitation of a Pathname to a Restricted Directory exists in IGSS (Versions 14 and prior using the service: IGSSupdate), which could allow a remote unauthenticated attacker to read… |
CWE-22
Path Traversal |
CVE-2020-7478 | 2024-11-21 14:37 | 2020-03-24 | Show | GitHub Exploit DB Packet Storm |
| 202266 | 7.8 |
HIGH
Local |
schneider-electric | ulti_zigbee_installation_toolkit | A CWE-426: Untrusted Search Path vulnerability exists in ZigBee Installation Kit (Versions prior to 1.0.1), which could cause execution of malicious code when a malicious file is put in the search pa… |
CWE-426
Untrusted Search Path |
CVE-2020-7476 | 2024-11-21 14:37 | 2020-03-24 | Show | GitHub Exploit DB Packet Storm |
| 202267 | 7.5 |
HIGH
Network |
schneider-electric |
140noe77101_firmware 140noe77111_firmware tsxh5744m_firmware tsxh5724m_firmware tsxp576634m_firmware tsxp57554m_firmware tsxp575634m_firmware tsxp57454m_firmware tsxp574634m_f… |
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Quantum Ethernet Network module 140NOE771x1 (Versions 7.0 and prior), Quantum processors with integrated Ethern… |
CWE-754
Improper Check for Unusual or Exceptional Conditions |
CVE-2020-7477 | 2024-11-21 14:37 | 2020-03-24 | Show | GitHub Exploit DB Packet Storm |
| 202268 | 9.8 |
CRITICAL
Network |
schneider-electric |
unity_pro ecostruxure_control_expert modicon_m340_firmware modicon_m580_firmware |
A CWE-74: Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection'), reflective DLL, vulnerability exists in EcoStruxure Control Expert (all versions prior to… |
CWE-74
Injection |
CVE-2020-7475 | 2024-11-21 14:37 | 2020-03-24 | Show | GitHub Exploit DB Packet Storm |
| 202269 | 7.8 |
HIGH
Local |
schneider-electric | pmepxm0100_prosoft_configurator | A CWE-427: Uncontrolled Search Path Element vulnerability exists in ProSoft Configurator (v1.002 and prior), for the PMEPXM0100 (H) module, which could cause the execution of untrusted code when usin… |
CWE-427
Uncontrolled Search Path Element |
CVE-2020-7474 | 2024-11-21 14:37 | 2020-03-24 | Show | GitHub Exploit DB Packet Storm |
| 202270 | 5.3 |
MEDIUM
Local |
yargs | yargs-parser | yargs-parser could be tricked into adding or modifying properties of Object.prototype using a "__proto__" payload. |
CWE-1321
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') |
CVE-2020-7608 | 2024-11-21 14:37 | 2020-03-17 | Show | GitHub Exploit DB Packet Storm |