|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 26, 2026, noon
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 229981 | 9.3 | 危険 | トレンドマイクロ | - | Housecall_ActiveX.dll の Trend Micro HouseCall ActiveX コントロールにおける任意のコードを実行される脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2008-2435 | 2012-12-20 18:52 | 2008-12-23 | Show | GitHub Exploit DB Packet Storm |
| 229982 | 9.3 | 危険 | トレンドマイクロ | - | Housecall_ActiveX.dll の Trend Micro HouseCall ActiveX コントロールにおけるクライアントシステム上へ任意のライブラリファイルをダウンロードされる脆弱性 |
CWE-94
コード・インジェクション |
CVE-2008-2434 | 2012-12-20 18:52 | 2008-12-23 | Show | GitHub Exploit DB Packet Storm |
| 229983 | 7.5 | 危険 | トレンドマイクロ | - | Trend Micro OfficeScan などの Web 管理コンソールにおけるセッションをハイジャックされる脆弱性 |
CWE-287
不適切な認証 |
CVE-2008-2433 | 2012-12-20 18:52 | 2008-08-20 | Show | GitHub Exploit DB Packet Storm |
| 229984 | 9.3 | 危険 | VideoLAN | - | Windows 上で稼動する VLC Media Player の modules/demux/wav.c における整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2008-2430 | 2012-12-20 18:52 | 2008-07-7 | Show | GitHub Exploit DB Packet Storm |
| 229985 | 6.8 | 警告 | torrenttrader | - | TorrentTrader Classic における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-2428 | 2012-12-20 18:52 | 2008-06-18 | Show | GitHub Exploit DB Packet Storm |
| 229986 | 7.5 | 危険 | webslider | - | Web Slider の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-2422 | 2012-12-20 18:52 | 2008-05-23 | Show | GitHub Exploit DB Packet Storm |
| 229987 | 4.3 | 警告 | SAP | - | SAP WAS などの Web GUI におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-2421 | 2012-12-20 18:52 | 2008-05-23 | Show | GitHub Exploit DB Packet Storm |
| 229988 | 6.8 | 警告 | stunnel | - | stunnel の OCSP 関数におけるアクセス制限を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-2420 | 2012-12-20 18:52 | 2008-05-23 | Show | GitHub Exploit DB Packet Storm |
| 229989 | 6.8 | 警告 | sazcart | - | SazCart の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-2411 | 2012-12-20 18:52 | 2008-05-22 | Show | GitHub Exploit DB Packet Storm |
| 229990 | 7.5 | 危険 | サン・マイクロシステムズ | - | Sun Java ASP Server の管理アプリケーションサーバにおける認証を回避される脆弱性 |
CWE-287
不適切な認証 |
CVE-2008-2406 | 2012-12-20 18:52 | 2008-06-3 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 26, 2026, 4:05 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 201231 | 6.1 |
MEDIUM
Network |
phpgurukul | hospital_management_system | PHPGurukul Hospital Management System in PHP v4.0 suffers from multiple Persistent XSS vulnerabilities. |
CWE-79
Cross-site Scripting |
CVE-2020-5191 | 2024-11-21 14:33 | 2020-01-6 | Show | GitHub Exploit DB Packet Storm |
| 201232 | 4.8 |
MEDIUM
Network |
codologic | codoforum | Codoforum 4.8.3 allows XSS via a post using parameters display name, title name, or content. |
CWE-79
Cross-site Scripting |
CVE-2020-5306 | 2024-11-21 14:33 | 2020-01-6 | Show | GitHub Exploit DB Packet Storm |
| 201233 | 4.8 |
MEDIUM
Network |
codologic | codoforum | Codoforum 4.8.3 allows XSS in the admin dashboard via a name field of a new user, i.e., on the Manage Users screen. |
CWE-79
Cross-site Scripting |
CVE-2020-5305 | 2024-11-21 14:33 | 2020-01-6 | Show | GitHub Exploit DB Packet Storm |
| 201234 | 7.1 |
HIGH
Network |
python debian canonical fedoraproject |
pillow debian_linux ubuntu_linux fedora |
libImaging/FliDecode.c in Pillow before 6.2.2 has an FLI buffer overflow. |
CWE-125
Out-of-bounds Read |
CVE-2020-5313 | 2024-11-21 14:33 | 2020-01-3 | Show | GitHub Exploit DB Packet Storm |
| 201235 | 9.8 |
CRITICAL
Network |
python canonical debian fedoraproject |
pillow ubuntu_linux debian_linux fedora |
libImaging/PcxDecode.c in Pillow before 6.2.2 has a PCX P mode buffer overflow. |
CWE-120
Classic Buffer Overflow |
CVE-2020-5312 | 2024-11-21 14:33 | 2020-01-3 | Show | GitHub Exploit DB Packet Storm |
| 201236 | 9.8 |
CRITICAL
Network |
python debian canonical fedoraproject |
pillow debian_linux ubuntu_linux fedora |
libImaging/SgiRleDecode.c in Pillow before 6.2.2 has an SGI buffer overflow. |
CWE-120
Classic Buffer Overflow |
CVE-2020-5311 | 2024-11-21 14:33 | 2020-01-3 | Show | GitHub Exploit DB Packet Storm |
| 201237 | 8.8 |
HIGH
Network |
python canonical fedoraproject |
pillow ubuntu_linux fedora |
libImaging/TiffDecode.c in Pillow before 6.2.2 has a TIFF decoding integer overflow, related to realloc. |
CWE-190
Integer Overflow or Wraparound |
CVE-2020-5310 | 2024-11-21 14:33 | 2020-01-3 | Show | GitHub Exploit DB Packet Storm |
| 201238 | 7.2 |
HIGH
Network |
comtechtel | stampede_fx-1010_firmware | Comtech Stampede FX-1010 7.4.3 devices allow remote authenticated administrators to execute arbitrary OS commands by navigating to the Diagnostics Ping page and entering shell metacharacters in the T… |
CWE-78
OS Command |
CVE-2020-5179 | 2024-11-21 14:33 | 2020-01-2 | Show | GitHub Exploit DB Packet Storm |
| 201239 | 3.3 |
LOW
Local |
ibm | financial_transaction_manager | IBM Financial Transaction Manager for High Value Payments for Multi-Platform 3.2.0 through 3.2.10 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force I… |
NVD-CWE-noinfo
|
CVE-2020-4556 | 2024-11-21 14:32 | 2023-03-16 | Show | GitHub Exploit DB Packet Storm |
| 201240 | 5.9 |
MEDIUM
Network |
ibm | spectrum_protect_plus | IBM Spectrum Protect Plus 10.1.0 through 10.1.12 discloses sensitive information due to unencrypted data being used in the communication flow between Spectrum Protect Plus vSnap and its agents. An a… |
CWE-319
Cleartext Transmission of Sensitive Information |
CVE-2020-4497 | 2024-11-21 14:32 | 2022-12-15 | Show | GitHub Exploit DB Packet Storm |