|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 24, 2026, 10 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 231541 | 6.8 | 警告 | freedesktop.org | - | Abiword pdftoabw utility で使用される Poppler におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-3938 | 2012-12-20 19:28 | 2009-11-13 | Show | GitHub Exploit DB Packet Storm |
| 231542 | 4.9 | 警告 | サン・マイクロシステムズ | - | Sun OpenSolaris の Solaris TCP ソケットにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2009-3937 | 2012-12-20 19:28 | 2009-11-13 | Show | GitHub Exploit DB Packet Storm |
| 231543 | 5 | 警告 | Webkit | - | Google Chrome で使用されている WebKit におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2009-3933 | 2012-12-20 19:28 | 2009-10-27 | Show | GitHub Exploit DB Packet Storm |
| 231544 | 9.3 | 危険 | raven software punkbuster |
- | Soldier of Fortune II で使用される pbsv.dll におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-3924 | 2012-12-20 19:28 | 2009-11-9 | Show | GitHub Exploit DB Packet Storm |
| 231545 | 7.5 | 危険 | サン・マイクロシステムズ | - | Sun VDI の VirtualBox Web サービスにおける不特定のアクセス権を取得される脆弱性 |
CWE-287
不適切な認証 |
CVE-2009-3923 | 2012-12-20 19:28 | 2009-11-3 | Show | GitHub Exploit DB Packet Storm |
| 231546 | 5 | 警告 | Sean Robertson | - | Drupal 用の crmngp モジュールの管理ページにおけるログ情報を読まれる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-3920 | 2012-12-20 19:28 | 2009-11-4 | Show | GitHub Exploit DB Packet Storm |
| 231547 | 4.3 | 警告 | Sean Robertson | - | Drupal 用の crmngp モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3919 | 2012-12-20 19:28 | 2009-11-4 | Show | GitHub Exploit DB Packet Storm |
| 231548 | 4.3 | 警告 | Ronan Dowling | - | Drupal 用の Node Hierarchy モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3916 | 2012-12-20 19:28 | 2009-11-4 | Show | GitHub Exploit DB Packet Storm |
| 231549 | 4.3 | 警告 | drunomics | - | Drupal 用の Temporary Invitation モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3914 | 2012-12-20 19:28 | 2009-11-4 | Show | GitHub Exploit DB Packet Storm |
| 231550 | 7.5 | 危険 | Xerox | - | Xerox Fiery Webtools の summary.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-3913 | 2012-12-20 19:28 | 2009-11-9 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 24, 2026, 4 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 212441 | 7.5 |
HIGH
Network |
cpanel | cpanel | cPanel before 88.0.13 allows bypass of a protection mechanism that attempted to restrict package modification (SEC-557). |
NVD-CWE-Other
|
CVE-2020-26109 | 2024-11-21 14:19 | 2020-09-25 | Show | GitHub Exploit DB Packet Storm |
| 212442 | 9.8 |
CRITICAL
Network |
cpanel | cpanel | cPanel before 88.0.13 mishandles file-extension dispatching, leading to code execution (SEC-488). |
NVD-CWE-Other
|
CVE-2020-26108 | 2024-11-21 14:19 | 2020-09-25 | Show | GitHub Exploit DB Packet Storm |
| 212443 | 7.5 |
HIGH
Network |
cpanel | cpanel | cPanel before 88.0.3, upon an upgrade, establishes predictable PowerDNS API keys (SEC-561). |
CWE-330
Use of Insufficiently Random Values |
CVE-2020-26107 | 2024-11-21 14:19 | 2020-09-25 | Show | GitHub Exploit DB Packet Storm |
| 212444 | 7.5 |
HIGH
Network |
cpanel | cpanel | cPanel before 88.0.3 has weak permissions (world readable) for the proxy subdomains log file (SEC-558). |
CWE-732
Incorrect Permission Assignment for Critical Resource |
CVE-2020-26106 | 2024-11-21 14:19 | 2020-09-25 | Show | GitHub Exploit DB Packet Storm |
| 212445 | 9.8 |
CRITICAL
Network |
cpanel | cpanel | In cPanel before 88.0.3, insecure chkservd test credentials are used on a templated VM (SEC-554). |
CWE-287
Improper Authentication |
CVE-2020-26105 | 2024-11-21 14:19 | 2020-09-25 | Show | GitHub Exploit DB Packet Storm |
| 212446 | 7.5 |
HIGH
Network |
cpanel | cpanel | In cPanel before 88.0.3, an insecure SRS secret is used on a templated VM (SEC-552). |
CWE-922
Insecure Storage of Sensitive Information |
CVE-2020-26104 | 2024-11-21 14:19 | 2020-09-25 | Show | GitHub Exploit DB Packet Storm |
| 212447 | 7.5 |
HIGH
Network |
cpanel | cpanel | In cPanel before 88.0.3, an insecure site password is used for Mailman on a templated VM (SEC-551). |
CWE-521
Weak Password Requirements |
CVE-2020-26103 | 2024-11-21 14:19 | 2020-09-25 | Show | GitHub Exploit DB Packet Storm |
| 212448 | 7.5 |
HIGH
Network |
cpanel | cpanel | In cPanel before 88.0.3, an insecure auth policy API key is used by Dovecot on a templated VM (SEC-550). |
NVD-CWE-noinfo
|
CVE-2020-26102 | 2024-11-21 14:19 | 2020-09-25 | Show | GitHub Exploit DB Packet Storm |
| 212449 | 9.8 |
CRITICAL
Network |
cpanel | cpanel | In cPanel before 88.0.3, insecure RNDC credentials are used for BIND on a templated VM (SEC-549). |
CWE-287
Improper Authentication |
CVE-2020-26101 | 2024-11-21 14:19 | 2020-09-25 | Show | GitHub Exploit DB Packet Storm |
| 212450 | 9.8 |
CRITICAL
Network |
cpanel | cpanel | chsh in cPanel before 88.0.3 allows a Jailshell escape (SEC-497). |
NVD-CWE-Other
|
CVE-2020-26100 | 2024-11-21 14:19 | 2020-09-25 | Show | GitHub Exploit DB Packet Storm |