|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 7, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 230171 | 4.3 | 警告 | scripts4profit | - | Scripts4Profit DXShopCart の search.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-5119 | 2012-12-20 18:52 | 2008-11-17 | Show | GitHub Exploit DB Packet Storm |
| 230172 | 4 | 警告 | WordPress.org | - | WordPress におけるクロスサイトリクエストフォージェリ (CSRF) 攻撃を実行される脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2008-5113 | 2012-12-20 18:52 | 2008-11-17 | Show | GitHub Exploit DB Packet Storm |
| 230173 | 4 | 警告 | Zope Foundation | - | Zope の PythonScripts におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2008-5102 | 2012-12-20 18:52 | 2008-11-17 | Show | GitHub Exploit DB Packet Storm |
| 230174 | 5 | 警告 | TYPO3 Association | - | TYPO3 File List エクステンションにおける重要な情報を取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2008-5096 | 2012-12-20 18:52 | 2008-11-14 | Show | GitHub Exploit DB Packet Storm |
| 230175 | 7.5 | 危険 | TYPO3 Association | - | TYPO3 Another Backend Login エクステンションにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-5087 | 2012-12-20 18:52 | 2008-11-14 | Show | GitHub Exploit DB Packet Storm |
| 230176 | 6.8 | 警告 | scripts frenzy | - | E-Uploader Pro における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-5075 | 2012-12-20 18:52 | 2008-11-14 | Show | GitHub Exploit DB Packet Storm |
| 230177 | 7.5 | 危険 | PHP-Fusion | - | PHP-Fusion 用の Freshlinks モジュールにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-5074 | 2012-12-20 18:52 | 2008-11-14 | Show | GitHub Exploit DB Packet Storm |
| 230178 | 9 | 危険 | yoxel | - | Yoxel の itpm_estimate.php における任意の PHP コードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2008-5071 | 2012-12-20 18:52 | 2008-11-14 | Show | GitHub Exploit DB Packet Storm |
| 230179 | 7.5 | 危険 | Pro Chat Rooms | - | Pro Chat Rooms における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-5070 | 2012-12-20 18:52 | 2008-11-14 | Show | GitHub Exploit DB Packet Storm |
| 230180 | 5 | 警告 | smolinari | - | mwcal の php/cal_pdf.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2008-5062 | 2012-12-20 18:52 | 2008-11-13 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 8, 2026, 4:09 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 208751 | 5.3 |
MEDIUM
Network |
siemens |
cpu_1504d_tf_firmware cpu_1507d_tf_firmware cpu_1515sp_pc2_tf_firmware simatic_s7_plcsim_advanced_firmware simatic_s7-1500_software_controller tim_1531_irc_firmware cpu_1211c_firmwa… |
A vulnerability has been identified in SIMATIC Drive Controller family (All versions < V2.9.2), SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants) (All versions < V21.9), SIMATIC… |
CWE-863
Incorrect Authorization |
CVE-2020-28397 | 2024-11-21 14:22 | 2021-08-10 | Show | GitHub Exploit DB Packet Storm |
| 208752 | 9.8 |
CRITICAL
Network |
jeecg | jeecg_boot | An arbitrary file upload vulnerability in /jeecg-boot/sys/common/upload of jeecg-boot CMS 2.3 allows attackers to execute arbitrary code. |
CWE-434
Unrestricted Upload of File with Dangerous Type |
CVE-2020-28088 | 2024-11-21 14:22 | 2021-08-7 | Show | GitHub Exploit DB Packet Storm |
| 208753 | 7.5 |
HIGH
Network |
jeecg | jeecg_boot | A SQL injection vulnerability in /jeecg boot/sys/dict/loadtreedata of jeecg-boot CMS 2.3 allows attackers to access sensitive database information. |
CWE-89
SQL Injection |
CVE-2020-28087 | 2024-11-21 14:22 | 2021-08-7 | Show | GitHub Exploit DB Packet Storm |
| 208754 | 7.5 |
HIGH
Network |
siemens |
dk_standard_ethernet_controller_evaluation_kit_firmware ek-ertec_200_evaulation_kit_firmware ek-ertec_200p_evaluation_kit_firmware ruggedcom_rm1224_firmware scalance_m-800_firmware sca… |
Affected devices contain a vulnerability that allows an unauthenticated attacker to trigger a denial-of-service condition. The vulnerability can be triggered if a large amount of DCP reset packets ar… |
CWE-770
Allocation of Resources Without Limits or Throttling |
CVE-2020-28400 | 2024-11-21 14:22 | 2021-07-13 | Show | GitHub Exploit DB Packet Storm |
| 208755 | 7.8 |
HIGH
Local |
prusa3d | prusaslicer | An out-of-bounds write vulnerability exists in the Admesh stl_fix_normal_directions() functionality of Prusa Research PrusaSlicer 2.2.0 and Master (commit 4b040b856). A specially crafted AMF file can… |
CWE-787
Out-of-bounds Write |
CVE-2020-28598 | 2024-11-21 14:22 | 2021-07-8 | Show | GitHub Exploit DB Packet Storm |
| 208756 | 4.3 |
MEDIUM
Network |
dovecot fedoraproject |
dovecot fedora |
The Sieve engine in Dovecot before 2.3.15 allows Uncontrolled Resource Consumption, as demonstrated by a situation with a complex regular expression for the regex extension. |
CWE-770
Allocation of Resources Without Limits or Throttling |
CVE-2020-28200 | 2024-11-21 14:22 | 2021-06-28 | Show | GitHub Exploit DB Packet Storm |
| 208757 | 5.9 |
MEDIUM
Physics |
linux netapp |
linux_kernel cloud_backup h410c_firmware h300s_firmware h500s_firmware h700s_firmware h300e_firmware h500e_firmware h700e_firmware h410s_firmware |
The vgacon subsystem in the Linux kernel before 5.8.10 mishandles software scrollback. There is a vgacon_scrolldelta out-of-bounds read, aka CID-973c096f6a85. |
CWE-125
Out-of-bounds Read |
CVE-2020-28097 | 2024-11-21 14:22 | 2021-06-24 | Show | GitHub Exploit DB Packet Storm |
| 208758 | 7.5 |
HIGH
Network |
gulpjs oracle |
glob-parent communications_cloud_native_core_policy |
This affects the package glob-parent before 5.1.2. The enclosure regex used to check for strings ending in enclosure containing path separator. |
CWE-400
Uncontrolled Resource Consumption |
CVE-2020-28469 | 2024-11-21 14:22 | 2021-06-4 | Show | GitHub Exploit DB Packet Storm |
| 208759 | 9.8 |
CRITICAL
Network |
articlecms_project | articlecms | A file upload issue exists in all versions of ArticleCMS which allows malicious users to getshell. |
CWE-434
Unrestricted Upload of File with Dangerous Type |
CVE-2020-28063 | 2024-11-21 14:22 | 2021-05-14 | Show | GitHub Exploit DB Packet Storm |
| 208760 | 7.5 |
HIGH
Network |
siemens |
scalance_xm-400_firmware scalance_xr524_firmware scalance_xr526_firmware scalance_xr528_firmware scalance_xr552_firmware scalance_xm416-4c_firmware scalance_xm408-8c_firmware sca… |
An unauthenticated remote attacker could create a permanent denial-of-service condition by sending specially crafted OSPF packets. Successful exploitation requires OSPF to be enabled on an affected d… | - | CVE-2020-28393 | 2024-11-21 14:22 | 2021-05-12 | Show | GitHub Exploit DB Packet Storm |