|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 27, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 231351 | 6.8 | 警告 | VirtueMart | - | VirtueMart における SQL インジェクションの脆弱性 | - | CVE-2007-3247 | 2012-12-20 18:19 | 2007-06-18 | Show | GitHub Exploit DB Packet Storm |
| 231352 | 7.5 | 危険 | web-app.org web-app.net |
- | web-app.net WebAPP などの Menu Manager Mod における任意のコマンドを実行される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2007-3242 | 2012-12-20 18:19 | 2007-06-14 | Show | GitHub Exploit DB Packet Storm |
| 231353 | 4.3 | 警告 | WordPress.org | - | WordPress 用の cordobo-green-park テーマの blogroll.php におけるクロスサイトスクリプティングの脆弱性 | - | CVE-2007-3241 | 2012-12-20 18:19 | 2007-06-14 | Show | GitHub Exploit DB Packet Storm |
| 231354 | 4.3 | 警告 | WordPress.org | - | WordPress 用の Vistered-Little テーマの 404.php におけるクロスサイトスクリプティングの脆弱性 | - | CVE-2007-3240 | 2012-12-20 18:19 | 2007-06-14 | Show | GitHub Exploit DB Packet Storm |
| 231355 | 4.3 | 警告 | WordPress.org | - | WordPress 用の AndyBlue テーマの searchform.php におけるクロスサイトスクリプティングの脆弱性 | - | CVE-2007-3239 | 2012-12-20 18:19 | 2007-06-14 | Show | GitHub Exploit DB Packet Storm |
| 231356 | 6 | 警告 | WordPress.org | - | WordPress のデフォルトテーマの functions.php におけるクロスサイトスクリプティングの脆弱性 | - | CVE-2007-3238 | 2012-12-20 18:19 | 2007-06-14 | Show | GitHub Exploit DB Packet Storm |
| 231357 | 6.8 | 警告 | XOOPS | - | XOOPS 用の TinyContent モジュールにおける PHP リモートファイルインクルージョンの脆弱性 | - | CVE-2007-3237 | 2012-12-20 18:19 | 2007-06-12 | Show | GitHub Exploit DB Packet Storm |
| 231358 | 7.5 | 危険 | XOOPS | - | XOOPS 用の Horoscope モジュールにおける PHP リモートファイルインクルージョンの脆弱性 | - | CVE-2007-3236 | 2012-12-20 18:19 | 2007-06-14 | Show | GitHub Exploit DB Packet Storm |
| 231359 | 5 | 警告 | tec-it | - | TEC-IT TBarCode OCX ActiveX コントロール における任意のファイルを上書きされる脆弱性 | - | CVE-2007-3233 | 2012-12-20 18:19 | 2007-06-14 | Show | GitHub Exploit DB Packet Storm |
| 231360 | 6.8 | 警告 | simian systems inc | - | Idan Sofer PHP::HTML の phphtml.php における PHP リモートファイルインクルージョンの脆弱性 | - | CVE-2007-3230 | 2012-12-20 18:19 | 2007-06-14 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 27, 2026, 4:52 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 199271 | 6.1 |
MEDIUM
Network |
gitlab | gitlab | GitLab EE 11.0 and later through 12.7.2 allows XSS. |
CWE-79
Cross-site Scripting |
CVE-2020-7971 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 199272 | 7.5 |
HIGH
Network |
gitlab | gitlab | GitLab EE 8.0 and later through 12.7.2 allows Information Disclosure. |
NVD-CWE-noinfo
|
CVE-2020-7969 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 199273 | 7.5 |
HIGH
Network |
gitlab | gitlab | GitLab EE 8.0 through 12.7.2 has Incorrect Access Control. |
CWE-862
Missing Authorization |
CVE-2020-7968 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 199274 | 4.3 |
MEDIUM
Network |
gitlab | gitlab | GitLab EE 8.0 through 12.7.2 has Insecure Permissions (issue 1 of 2). |
CWE-276
Incorrect Default Permissions |
CVE-2020-7967 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 199275 | 7.5 |
HIGH
Network |
gitlab | gitlab | GitLab EE 11.11 and later through 12.7.2 allows Directory Traversal. |
CWE-22
Path Traversal |
CVE-2020-7966 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 199276 | 9.8 |
CRITICAL
Network |
gitlab | gitlab | GitLab EE 8.9 and later through 12.7.2 has Insecure Permission |
CWE-276
Incorrect Default Permissions |
CVE-2020-8114 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 199277 | 5.3 |
MEDIUM
Network |
gitlab | gitlab | GitLab EE 8.9 and later through 12.7.2 has Insecure Permission |
CWE-276
Incorrect Default Permissions |
CVE-2020-7979 | 2024-11-21 14:38 | 2020-02-6 | Show | GitHub Exploit DB Packet Storm |
| 199278 | 7.5 |
HIGH
Network |
squid-cache opensuse canonical |
squid leap ubuntu_linux |
An issue was discovered in Squid before 4.10. Due to incorrect input validation, the NTLM authentication credentials parser in ext_lm_group_acl may write to memory outside the credentials buffer. On … |
CWE-20 CWE-787 Improper Input Validation Out-of-bounds Write |
CVE-2020-8517 | 2024-11-21 14:38 | 2020-02-5 | Show | GitHub Exploit DB Packet Storm |
| 199279 | 7.3 |
HIGH
Network |
squid-cache canonical opensuse fedoraproject debian |
squid ubuntu_linux leap fedora debian_linux |
An issue was discovered in Squid before 4.10. Due to incorrect buffer management, a remote client can cause a buffer overflow in a Squid instance acting as a reverse proxy. |
CWE-787 CWE-131 Out-of-bounds Write Incorrect Calculation of Buffer Size |
CVE-2020-8450 | 2024-11-21 14:38 | 2020-02-5 | Show | GitHub Exploit DB Packet Storm |
| 199280 | 7.5 |
HIGH
Network |
squid-cache debian canonical opensuse fedoraproject |
squid debian_linux ubuntu_linux leap fedora |
An issue was discovered in Squid before 4.10. Due to incorrect input validation, it can interpret crafted HTTP requests in unexpected ways to access server resources prohibited by earlier security fi… |
CWE-668
Exposure of Resource to Wrong Sphere |
CVE-2020-8449 | 2024-11-21 14:38 | 2020-02-5 | Show | GitHub Exploit DB Packet Storm |