|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 8, 2026, 12:07 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 230441 | 7.5 | 危険 | portalapp | - | PortalApp におけるトピックなどを作成および削除される脆弱性 |
CWE-287
不適切な認証 |
CVE-2008-4614 | 2012-12-20 18:52 | 2008-10-20 | Show | GitHub Exploit DB Packet Storm |
| 230442 | 7.5 | 危険 | portalapp | - | PortalApp の forums.asp における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-4613 | 2012-12-20 18:52 | 2008-10-20 | Show | GitHub Exploit DB Packet Storm |
| 230443 | 4.3 | 警告 | portalapp | - | PortalApp におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-4612 | 2012-12-20 18:52 | 2008-10-20 | Show | GitHub Exploit DB Packet Storm |
| 230444 | 6.5 | 警告 | qualityunit | - | Post Affiliate Pro の index.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2008-4602 | 2012-12-20 18:52 | 2008-10-17 | Show | GitHub Exploit DB Packet Storm |
| 230445 | 7.5 | 危険 | steve dawson | - | PokerMax Poker League Tournament Script の configure.php における認証を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-4600 | 2012-12-20 18:52 | 2008-10-17 | Show | GitHub Exploit DB Packet Storm |
| 230446 | 10 | 危険 | slaytanic scripts | - | Slaytanic Scripts Content Plus における脆弱性 |
CWE-noinfo
情報不足 |
CVE-2008-4595 | 2012-12-20 18:52 | 2008-10-17 | Show | GitHub Exploit DB Packet Storm |
| 230447 | 10 | 危険 | sportspanel | - | Sports Clubs Web Panel の index.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2008-4592 | 2012-12-20 18:52 | 2008-10-16 | Show | GitHub Exploit DB Packet Storm |
| 230448 | 4.3 | 警告 | phpwebgallery | - | PhpWebGallery の admin/include/isadmin.inc.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-4591 | 2012-12-20 18:52 | 2008-10-16 | Show | GitHub Exploit DB Packet Storm |
| 230449 | 7.5 | 危険 | stash | - | Stash における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-4590 | 2012-12-20 18:52 | 2008-10-16 | Show | GitHub Exploit DB Packet Storm |
| 230450 | 5 | 警告 | Matthias Wandel | - | jhead の DoCommand 関数におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2008-4575 | 2012-12-20 18:52 | 2008-10-15 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 8, 2026, 4:09 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 209091 | 9.1 |
CRITICAL
Network |
microchip | mplab_network_creator | In Microchip MPLAB Net 3.6.1, TCP ISNs are improperly random. |
CWE-330
Use of Insufficiently Random Values |
CVE-2020-27636 | 2024-11-21 14:21 | 2023-10-11 | Show | GitHub Exploit DB Packet Storm |
| 209092 | 9.1 |
CRITICAL
Network |
capgemini | picotcp | In PicoTCP 1.7.0, TCP ISNs are improperly random. |
CWE-330
Use of Insufficiently Random Values |
CVE-2020-27635 | 2024-11-21 14:21 | 2023-10-11 | Show | GitHub Exploit DB Packet Storm |
| 209093 | 9.1 |
CRITICAL
Network |
contiki-ng | contiki-ng | In Contiki 4.5, TCP ISNs are improperly random. |
CWE-330
Use of Insufficiently Random Values |
CVE-2020-27634 | 2024-11-21 14:21 | 2023-10-11 | Show | GitHub Exploit DB Packet Storm |
| 209094 | 9.1 |
CRITICAL
Network |
butok | fnet | In FNET 4.6.3, TCP ISNs are improperly random. |
CWE-330
Use of Insufficiently Random Values |
CVE-2020-27633 | 2024-11-21 14:21 | 2023-10-11 | Show | GitHub Exploit DB Packet Storm |
| 209095 | 9.8 |
CRITICAL
Network |
oryx-embedded | cyclonetcp | In Oryx CycloneTCP 1.9.6, TCP ISNs are improperly random. |
CWE-330
Use of Insufficiently Random Values |
CVE-2020-27631 | 2024-11-21 14:21 | 2023-10-11 | Show | GitHub Exploit DB Packet Storm |
| 209096 | 6.1 |
MEDIUM
Network |
humaxdigital | hgb10r-02_firmware | Cross Site Scripting (XSS) vulnerability in wlscanresults.html in Humax HGB10R-02 BRGCAB version 1.0.03, allows local attackers to execute arbitrary code. |
CWE-79
Cross-site Scripting |
CVE-2020-27366 | 2024-11-21 14:21 | 2023-08-29 | Show | GitHub Exploit DB Packet Storm |
| 209097 | 4.4 |
MEDIUM
Local |
fedoraproject | fedora_linux_kernel | A Use After Free vulnerability in Fedora Linux kernel 5.9.0-rc9 allows attackers to obatin sensitive information via vgacon_invert_region() function. |
CWE-416
Use After Free |
CVE-2020-27418 | 2024-11-21 14:21 | 2023-08-23 | Show | GitHub Exploit DB Packet Storm |
| 209098 | 9.8 |
CRITICAL
Network |
foldingathome | client_advanced_control | An issue was discovered in FoldingAtHome Client Advanced Control GUI before commit 9b619ae64443997948a36dda01b420578de1af77, allows remote attackers to execute arbitrary code via crafted payload to f… |
NVD-CWE-noinfo
|
CVE-2020-27544 | 2024-11-21 14:21 | 2023-08-11 | Show | GitHub Exploit DB Packet Storm |
| 209099 | 9.1 |
CRITICAL
Network |
zrlog | zrlog | Directory Traversal vulnerability in delete function in admin.api.TemplateController in ZrLog version 2.1.15, allows remote attackers to delete arbitrary files and cause a denial of service (DoS). |
CWE-22
Path Traversal |
CVE-2020-27514 | 2024-11-21 14:21 | 2023-08-11 | Show | GitHub Exploit DB Packet Storm |
| 209100 | 6.1 |
MEDIUM
Network |
zohocorp | manageengine_password_manager_pro | Cross Site Scripting (XSS) vulnerability in Query Report feature in Zoho ManageEngine Password Manager Pro version 11001, allows remote attackers to execute arbitrary code and steal cookies via craft… |
CWE-79
Cross-site Scripting |
CVE-2020-27449 | 2024-11-21 14:21 | 2023-08-11 | Show | GitHub Exploit DB Packet Storm |