|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 2, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 230401 | 4.3 | 警告 | SAP | - | SAP ITS の WGate におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-2123 | 2012-12-20 18:52 | 2008-05-9 | Show | GitHub Exploit DB Packet Storm |
| 230402 | 7.5 | 危険 | project alumni | - | Project Alumni の info.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-2118 | 2012-12-20 18:52 | 2008-05-8 | Show | GitHub Exploit DB Packet Storm |
| 230403 | 4.3 | 警告 | project alumni | - | Project Alumni の pages/news.page.inc におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-2117 | 2012-12-20 18:52 | 2008-05-8 | Show | GitHub Exploit DB Packet Storm |
| 230404 | 4.4 | 警告 | Scriptsez.net | - | ScriptsEZ.net Power Editor の editor.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2008-2116 | 2012-12-20 18:52 | 2008-05-8 | Show | GitHub Exploit DB Packet Storm |
| 230405 | 4.3 | 警告 | Scriptsez.net | - | ScriptsEZ.net Power Editor の editor.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-2115 | 2012-12-20 18:52 | 2008-05-8 | Show | GitHub Exploit DB Packet Storm |
| 230406 | 7.5 | 危険 | PreProject.com | - | Pre Shopping Mall の emall/search.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-2114 | 2012-12-20 18:52 | 2008-05-8 | Show | GitHub Exploit DB Packet Storm |
| 230407 | 7.5 | 危険 | phpeasydata | - | PHPEasyData の annuaire.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-2113 | 2012-12-20 18:52 | 2008-05-8 | Show | GitHub Exploit DB Packet Storm |
| 230408 | 5 | 警告 | vicftps | - | VicFTPS におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2008-2031 | 2012-12-20 18:52 | 2008-04-30 | Show | GitHub Exploit DB Packet Storm |
| 230409 | 5.8 | 警告 | RSAセキュリティ | - | Web の IIS 用の RSA Authentication Agent におけるオープンリダイレクトの脆弱性 |
CWE-200
情報漏えい |
CVE-2008-2027 | 2012-12-20 18:52 | 2008-04-30 | Show | GitHub Exploit DB Packet Storm |
| 230410 | 4.3 | 警告 | RSAセキュリティ | - | RSA Authentication Agent の WebID/IISWebAgentIF.dll におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-2026 | 2012-12-20 18:52 | 2008-04-30 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 2, 2026, 4:18 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 201341 | 7.5 |
HIGH
Network |
schneider-electric |
modicon_m580_bmep584040_firmware modicon_m580_bmep582040_firmware modicon_m580_bmep586040_firmware modicon_m580_bmep585040_firmware modicon_m580_bmep582020_firmware modicon_m580_bmep58… |
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Legacy Controllers Modicon Quantum & Modicon Premium (see security notifications fo… | - | CVE-2020-7542 | 2024-11-21 14:37 | 2020-12-11 | Show | GitHub Exploit DB Packet Storm |
| 201342 | 5.3 |
MEDIUM
Network |
schneider-electric |
modicon_m340_bmxp341000_firmware modicon_m340_bmxp342000_firmware modicon_m340_bmxp3420102_firmware modicon_m340_bmxp3420102cl_firmware modicon_m340_bmxp342020_firmware modicon_m340_bm… |
A CWE-425: Direct Request ('Forced Browsing') vulnerability exists in the Web Server on Modicon M340, Legacy Offers Modicon Quantum and Modicon Premium and associated Communication Modules (see secur… | - | CVE-2020-7541 | 2024-11-21 14:37 | 2020-12-11 | Show | GitHub Exploit DB Packet Storm |
| 201343 | 9.8 |
CRITICAL
Network |
schneider-electric |
modicon_m340_bmxp341000_firmware modicon_m340_bmxp342000_firmware modicon_m340_bmxp3420102_firmware modicon_m340_bmxp3420102cl_firmware modicon_m340_bmxp342020_firmware modicon_m340_bm… |
A CWE-306: Missing Authentication for Critical Function vulnerability exists in the Web Server on Modicon M340, Legacy Offers Modicon Quantum and Modicon Premium and associated Communication Modules … | - | CVE-2020-7540 | 2024-11-21 14:37 | 2020-12-11 | Show | GitHub Exploit DB Packet Storm |
| 201344 | 7.5 |
HIGH
Network |
schneider-electric |
modicon_m340_bmxp341000_firmware modicon_m340_bmxp342000_firmware modicon_m340_bmxp3420102_firmware modicon_m340_bmxp3420102cl_firmware modicon_m340_bmxp342020_firmware modicon_m340_bm… |
A CWE-754 Improper Check for Unusual or Exceptional Conditions vulnerability exists in the Web Server on Modicon M340, Legacy Offers Modicon Quantum and Modicon Premium and associated Communication M… | - | CVE-2020-7539 | 2024-11-21 14:37 | 2020-12-11 | Show | GitHub Exploit DB Packet Storm |
| 201345 | 7.5 |
HIGH
Network |
schneider-electric |
modicon_m580_bmep584040_firmware modicon_m580_bmep582040_firmware modicon_m580_bmep586040_firmware modicon_m580_bmep585040_firmware modicon_m580_bmep582020_firmware modicon_m580_bmep58… |
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Modicon M580, Modicon M340, Legacy Controllers Modicon Quantum & Modicon Premium (see security notifications fo… | - | CVE-2020-7537 | 2024-11-21 14:37 | 2020-12-11 | Show | GitHub Exploit DB Packet Storm |
| 201346 | 7.5 |
HIGH
Network |
schneider-electric |
modicon_m340_bmxp341000_firmware modicon_m340_bmxp342000_firmware modicon_m340_bmxp3420102_firmware modicon_m340_bmxp3420102cl_firmware modicon_m340_bmxp342020_firmware modicon_m340_bm… |
A CWE-754:Improper Check for Unusual or Exceptional Conditions vulnerability exists in Modicon M340 CPUs (BMXP34* versions prior to V3.30) Modicon M340 Communication Ethernet modules (BMXNOE0100 (H) … | - | CVE-2020-7536 | 2024-11-21 14:37 | 2020-12-11 | Show | GitHub Exploit DB Packet Storm |
| 201347 | 7.5 |
HIGH
Network |
schneider-electric |
modicon_m340_bmxp341000_firmware modicon_m340_bmxp342000_firmware modicon_m340_bmxp3420102_firmware modicon_m340_bmxp3420102cl_firmware modicon_m340_bmxp342020_firmware modicon_m340_bm… |
A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal' Vulnerability Type) vulnerability exists in the Web Server on Modicon M340, Legacy Offers Modicon Quantum and M… | - | CVE-2020-7535 | 2024-11-21 14:37 | 2020-12-11 | Show | GitHub Exploit DB Packet Storm |
| 201348 | 6.3 |
MEDIUM
Adjacent |
mcafee | database_security | Use of a Broken or Risky Cryptographic Algorithm vulnerability in McAfee Database Security Server and Sensor prior to 4.8.0 in the form of a SHA1 signed certificate that would allow an attacker on th… |
CWE-327
Use of a Broken or Risky Cryptographic Algorithm |
CVE-2020-7339 | 2024-11-21 14:37 | 2020-12-10 | Show | GitHub Exploit DB Packet Storm |
| 201349 | 6.4 |
MEDIUM
Network |
phpoffice | phpspreadsheet | This affects the package phpoffice/phpspreadsheet from 0.0.0. The library is vulnerable to XSS when creating an html output from an excel file by adding a comment on any cell. The root cause of this … |
CWE-79
Cross-site Scripting |
CVE-2020-7776 | 2024-11-21 14:37 | 2020-12-10 | Show | GitHub Exploit DB Packet Storm |
| 201350 | 8.2 |
HIGH
Network |
react-adal_project | react-adal | This affects all versions of package react-adal. It is possible for a specially crafted JWT token and request URL can cause the nonce, session and refresh values to be incorrectly validated, causing … |
CWE-287
Improper Authentication |
CVE-2020-7787 | 2024-11-21 14:37 | 2020-12-10 | Show | GitHub Exploit DB Packet Storm |