|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 30, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 230351 | 7.5 | 危険 | turnkey web tools | - | Turnkey Web Tools SunShop Shopping Cart の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-2339 | 2012-12-20 18:52 | 2008-05-19 | Show | GitHub Exploit DB Packet Storm |
| 230352 | 4.3 | 警告 | Vastal I-Tech & Co. | - | Vastal I-Tech phpVID の search_results.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-2335 | 2012-12-20 18:52 | 2008-05-19 | Show | GitHub Exploit DB Packet Storm |
| 230353 | 7.5 | 危険 | phpway | - | Kostenloses Linkmanagementscript における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-2301 | 2012-12-20 18:52 | 2008-05-18 | Show | GitHub Exploit DB Packet Storm |
| 230354 | 7.5 | 危険 | 加藤和良 | - | Web Slider の Admin.php における認証を回避される脆弱性 |
CWE-287
不適切な認証 |
CVE-2008-2298 | 2012-12-20 18:52 | 2008-05-18 | Show | GitHub Exploit DB Packet Storm |
| 230355 | 7.5 | 危険 | roticv | - | Rantx の admin.php における認証を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-2297 | 2012-12-20 18:52 | 2008-05-18 | Show | GitHub Exploit DB Packet Storm |
| 230356 | 7.5 | 危険 | rgboard | - | Rgboard の include/bbs.lib.inc.php における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2008-2296 | 2012-12-20 18:52 | 2008-05-18 | Show | GitHub Exploit DB Packet Storm |
| 230357 | 4.3 | 警告 | rgboard | - | Rgboard の rg_search.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-2295 | 2012-12-20 18:52 | 2008-05-18 | Show | GitHub Exploit DB Packet Storm |
| 230358 | 7.5 | 危険 | tpvgames | - | MPCS の admin.php における認証を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-2293 | 2012-12-20 18:52 | 2008-05-18 | Show | GitHub Exploit DB Packet Storm |
| 230359 | 7.5 | 危険 | シマンテック | - | Symantec Altiris Deployment Solution の axengine.exe における暗号化されたドメイン資格情報を推測される脆弱性 |
CWE-255
証明書・パスワード管理 |
CVE-2008-2291 | 2012-12-20 18:52 | 2008-05-14 | Show | GitHub Exploit DB Packet Storm |
| 230360 | 7.2 | 危険 | シマンテック | - | Symantec Altiris Deployment Solution の Agent ユーザインターフェースにおける権限を取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-2290 | 2012-12-20 18:52 | 2008-05-14 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 30, 2026, 4:16 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 2941 | 8.1 |
HIGH
Network |
- | - | in OpenHarmony v6.0 and prior versions allow a remote attacker arbitrary code execution in pre-installed apps. |
CWE-364
Signal Handler Race Condition |
CVE-2026-24792 | 2026-05-19 23:25 | 2026-05-19 | Show | GitHub Exploit DB Packet Storm |
| 2942 | 3.3 |
LOW
Local |
- | - | in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS. |
CWE-476
NULL Pointer Dereference |
CVE-2026-25110 | 2026-05-19 23:25 | 2026-05-19 | Show | GitHub Exploit DB Packet Storm |
| 2943 | 8.4 |
HIGH
Local |
- | - | in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS and it cannot be recovered. |
CWE-787
Out-of-bounds Write |
CVE-2026-25781 | 2026-05-19 23:25 | 2026-05-19 | Show | GitHub Exploit DB Packet Storm |
| 2944 | 5.5 |
MEDIUM
Local |
- | - | in OpenHarmony v6.0 and prior versions allow a local attacker cause information leak |
CWE-281
Improper Preservation of Permissions |
CVE-2026-25850 | 2026-05-19 23:25 | 2026-05-19 | Show | GitHub Exploit DB Packet Storm |
| 2945 | 8.8 |
HIGH
Network |
- | - | in OpenHarmony v6.0 and prior versions allow a remote attacker arbitrary code execution in pre-installed apps. |
CWE-787
Out-of-bounds Write |
CVE-2026-27648 | 2026-05-19 23:25 | 2026-05-19 | Show | GitHub Exploit DB Packet Storm |
| 2946 | 5.5 |
MEDIUM
Local |
- | - | in OpenHarmony v6.0 and prior versions allow a local attacker cause information leak. |
CWE-364
Signal Handler Race Condition |
CVE-2026-27766 | 2026-05-19 23:25 | 2026-05-19 | Show | GitHub Exploit DB Packet Storm |
| 2947 | 3.3 |
LOW
Local |
- | - | in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS. |
CWE-190
Integer Overflow or Wraparound |
CVE-2026-27781 | 2026-05-19 23:25 | 2026-05-19 | Show | GitHub Exploit DB Packet Storm |
| 2948 | 6.5 |
MEDIUM
Local |
- | - | in OpenHarmony v6.0 and prior versions allow a local attacker arbitrary code execution. |
CWE-416
Use After Free |
CVE-2026-28733 | 2026-05-19 23:25 | 2026-05-19 | Show | GitHub Exploit DB Packet Storm |
| 2949 | 3.3 |
LOW
Local |
- | - | in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS. |
CWE-20
Improper Input Validation |
CVE-2026-28751 | 2026-05-19 23:25 | 2026-05-19 | Show | GitHub Exploit DB Packet Storm |
| 2950 | 3.3 |
LOW
Local |
- | - | in OpenHarmony v6.0 and prior versions allow a local attacker cause DOS. |
CWE-364
Signal Handler Race Condition |
CVE-2026-33565 | 2026-05-19 23:25 | 2026-05-19 | Show | GitHub Exploit DB Packet Storm |