|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 15, 2026, 4 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 230831 | 7.5 | 危険 | phpbp | - | phpBP の index.php における upload/banners/ ファイルに任意の PHP コードを挿入される脆弱性 | - | CVE-2007-0370 | 2012-12-20 18:19 | 2007-01-19 | Show | GitHub Exploit DB Packet Storm |
| 230832 | 7.5 | 危険 | phpbp | - | phpBP における SQL インジェクションの脆弱性 | - | CVE-2007-0369 | 2012-12-20 18:19 | 2007-01-19 | Show | GitHub Exploit DB Packet Storm |
| 230833 | 7.5 | 危険 | uberghey | - | Uberghey CMS の frontpage.php における PHP リモートファイルインクルージョンの脆弱性 | - | CVE-2007-0359 | 2012-12-20 18:19 | 2007-01-18 | Show | GitHub Exploit DB Packet Storm |
| 230834 | 6.2 | 警告 | zonelabs | - | Microsoft Windows XP および Windows Server 2003 における権限を取得される脆弱性 | - | CVE-2007-0351 | 2012-12-20 18:19 | 2007-01-18 | Show | GitHub Exploit DB Packet Storm |
| 230835 | 7.5 | 危険 | sme | - | SmE FileMailer の index.php および dl.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2007-0350 | 2012-12-20 18:19 | 2007-01-18 | Show | GitHub Exploit DB Packet Storm |
| 230836 | 7.5 | 危険 | sme | - | SmE FileMailer の index.php における SQL インジェクションの脆弱性 | - | CVE-2007-0346 | 2012-12-20 18:19 | 2007-01-17 | Show | GitHub Exploit DB Packet Storm |
| 230837 | 6.8 | 警告 | The phpMyAdmin Project | - | phpMyAdmin におけるクロスサイトスクリプティングの脆弱性 | - | CVE-2007-0341 | 2012-12-20 18:19 | 2007-01-17 | Show | GitHub Exploit DB Packet Storm |
| 230838 | 7.5 | 危険 | thwboard | - | ThWboard の inc/header.inc.php における SQL インジェクションの脆弱性 | - | CVE-2007-0340 | 2012-12-20 18:19 | 2007-01-17 | Show | GitHub Exploit DB Packet Storm |
| 230839 | 7.5 | 危険 | scriptme | - | Scriptme SMe FileMailer の index.php における SQL インジェクションの脆弱性 | - | CVE-2007-0339 | 2012-12-20 18:19 | 2007-01-17 | Show | GitHub Exploit DB Packet Storm |
| 230840 | 4.4 | 警告 | rixstep | - | Rixstep Undercover の Undercover.app/Contents/Resources/uc における任意のファイルを上書きされる脆弱性 | - | CVE-2007-0336 | 2012-12-20 18:19 | 2007-01-17 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 15, 2026, 4:28 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 212431 | 5.5 |
MEDIUM
Local |
openexr fedoraproject canonical opensuse debian apple |
openexr fedora ubuntu_linux leap debian_linux tvos iphone_os icloud itunes watchos ipados mac_os_x |
An issue was discovered in OpenEXR before 2.4.1. There is an std::vector out-of-bounds read and write, as demonstrated by ImfTileOffsets.cpp. |
CWE-125 CWE-787 Out-of-bounds Read Out-of-bounds Write |
CVE-2020-11763 | 2024-11-21 13:58 | 2020-04-15 | Show | GitHub Exploit DB Packet Storm |
| 212432 | 5.5 |
MEDIUM
Local |
openexr fedoraproject canonical opensuse debian apple |
openexr fedora ubuntu_linux leap debian_linux mac_os_x tvos iphone_os icloud itunes watchos ipados |
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read and write in DwaCompressor::uncompress in ImfDwaCompressor.cpp when handling the UNKNOWN compression case. |
CWE-125 CWE-787 Out-of-bounds Read Out-of-bounds Write |
CVE-2020-11762 | 2024-11-21 13:58 | 2020-04-15 | Show | GitHub Exploit DB Packet Storm |
| 212433 | 5.5 |
MEDIUM
Local |
openexr fedoraproject canonical debian apple |
openexr fedora ubuntu_linux debian_linux mac_os_x tvos iphone_os icloud itunes watchos ipados |
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read during Huffman uncompression, as demonstrated by FastHufDecoder::refill in ImfFastHuf.cpp. |
CWE-125
Out-of-bounds Read |
CVE-2020-11761 | 2024-11-21 13:58 | 2020-04-15 | Show | GitHub Exploit DB Packet Storm |
| 212434 | 5.5 |
MEDIUM
Local |
openexr fedoraproject canonical opensuse debian apple |
openexr fedora ubuntu_linux leap debian_linux mac_os_x tvos iphone_os icloud itunes watchos ipados |
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read during RLE uncompression in rleUncompress in ImfRle.cpp. |
CWE-125
Out-of-bounds Read |
CVE-2020-11760 | 2024-11-21 13:58 | 2020-04-15 | Show | GitHub Exploit DB Packet Storm |
| 212435 | 5.5 |
MEDIUM
Local |
openexr fedoraproject canonical debian apple |
openexr fedora ubuntu_linux debian_linux tvos iphone_os icloud itunes watchos ipados mac_os_x |
An issue was discovered in OpenEXR before 2.4.1. Because of integer overflows in CompositeDeepScanLine::Data::handleDeepFrameBuffer and readSampleCountForLineBlock, an attacker can write to an out-of… |
CWE-190
Integer Overflow or Wraparound |
CVE-2020-11759 | 2024-11-21 13:58 | 2020-04-15 | Show | GitHub Exploit DB Packet Storm |
| 212436 | 5.5 |
MEDIUM
Local |
openexr fedoraproject canonical opensuse debian apple |
openexr fedora ubuntu_linux leap debian_linux mac_os_x tvos iphone_os icloud itunes watchos ipados |
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read in ImfOptimizedPixelReading.h. |
CWE-125
Out-of-bounds Read |
CVE-2020-11758 | 2024-11-21 13:58 | 2020-04-15 | Show | GitHub Exploit DB Packet Storm |
| 212437 | 5.5 |
MEDIUM
Local |
cellebrite | ufed_firmware | Cellebrite UFED 5.0 through 7.29 uses four hardcoded RSA private keys to authenticate to the ADB daemon on target devices. Extracted keys can be used to place evidence onto target devices when perfor… |
CWE-798
Use of Hard-coded Credentials |
CVE-2020-11723 | 2024-11-21 13:58 | 2020-04-15 | Show | GitHub Exploit DB Packet Storm |
| 212438 | 5.5 |
MEDIUM
Local |
xen debian fedoraproject opensuse |
xen debian_linux fedora leap |
An issue was discovered in xenoprof in Xen through 4.13.x, allowing guest OS users (without active profiling) to obtain sensitive information about other guests. Unprivileged guests can request to ma… |
CWE-212
Improper Removal of Sensitive Information Before Storage or Transfer |
CVE-2020-11740 | 2024-11-21 13:58 | 2020-04-14 | Show | GitHub Exploit DB Packet Storm |
| 212439 | 7.5 |
HIGH
Network |
snapcreek | duplicator | The Snap Creek Duplicator plugin before 1.3.28 for WordPress (and Duplicator Pro before 3.8.7.1) allows Directory Traversal via ../ in the file parameter to duplicator_download or duplicator_init. |
CWE-22
Path Traversal |
CVE-2020-11738 | 2024-11-21 13:58 | 2020-04-14 | Show | GitHub Exploit DB Packet Storm |
| 212440 | 3.9 |
LOW
Local |
gnome debian canonical |
file-roller debian_linux ubuntu_linux |
fr-archive-libarchive.c in GNOME file-roller through 3.36.1 allows Directory Traversal during extraction because it lacks a check of whether a file's parent is a symlink to a directory outside of the… |
CWE-22 CWE-59 Path Traversal Link Following |
CVE-2020-11736 | 2024-11-21 13:58 | 2020-04-14 | Show | GitHub Exploit DB Packet Storm |