|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 27, 2026, 10 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 244331 | 7.5 | 危険 | ASP-DEV | - | ASP-DEv XM Events Diary の default.asp における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-5923 | 2012-06-26 16:10 | 2009-01-21 | Show | GitHub Exploit DB Packet Storm |
| 244332 | 7.5 | 危険 | cfagcms | - | CFAGCMS の themes/default/index.php における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2008-5922 | 2012-06-26 16:10 | 2009-01-21 | Show | GitHub Exploit DB Packet Storm |
| 244333 | 7.5 | 危険 | codeavalanche | - | CodeAvalanche Articles における管理者パスワードを含むデータベースファイルをダウンロードされる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-5900 | 2012-06-26 16:10 | 2009-01-12 | Show | GitHub Exploit DB Packet Storm |
| 244334 | 7.5 | 危険 | codeavalanche | - | CodeAvalanche FreeForAll における管理者パスワードを含むデータベースファイルをダウンロードされる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-5899 | 2012-06-26 16:10 | 2009-01-12 | Show | GitHub Exploit DB Packet Storm |
| 244335 | 7.5 | 危険 | codeavalanche | - | CodeAvalanche Directory における管理者パスワードを含むデータベースファイルをダウンロードされる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-5898 | 2012-06-26 16:10 | 2009-01-12 | Show | GitHub Exploit DB Packet Storm |
| 244336 | 7.5 | 危険 | codeavalanche | - | CodeAvalanche FreeWallpaper における管理者パスワードを含むデータベースファイルをダウンロードされる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-5897 | 2012-06-26 16:10 | 2009-01-12 | Show | GitHub Exploit DB Packet Storm |
| 244337 | 7.5 | 危険 | codeavalanche | - | CodeAvalanche RateMySite における管理者パスワードを含むデータベースファイルをダウンロードされる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-5896 | 2012-06-26 16:10 | 2009-01-12 | Show | GitHub Exploit DB Packet Storm |
| 244338 | 7.5 | 危険 | gobbl | - | Gobbl CMS の admin/auth.php における管理アクセス権を取得される脆弱性 |
CWE-287
不適切な認証 |
CVE-2008-5880 | 2012-06-26 16:10 | 2009-01-8 | Show | GitHub Exploit DB Packet Storm |
| 244339 | 4.3 | 警告 | FastStone Soft | - | FastStone Image Viewer におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2008-5870 | 2012-06-26 16:10 | 2009-01-8 | Show | GitHub Exploit DB Packet Storm |
| 244340 | 5 | 警告 | freelyrics | - | FreeLyrics の source.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2008-5861 | 2012-06-26 16:10 | 2009-01-6 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 27, 2026, 4:52 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 219841 | 6.5 |
MEDIUM
Network |
google debian redhat fedoraproject |
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation fedora |
A missing case for handling special schemes in permission request checks in Extensions in Google Chrome prior to 72.0.3626.81 allowed an attacker who convinced a user to install a malicious extension… |
CWE-79
Cross-site Scripting |
CVE-2019-5778 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |
| 219842 | 6.5 |
MEDIUM
Network |
google redhat debian fedoraproject |
chrome enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation debian_linux fedora |
Incorrect handling of a confusable character in Omnibox in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted domain name. |
NVD-CWE-noinfo
|
CVE-2019-5777 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |
| 219843 | 6.5 |
MEDIUM
Network |
google debian redhat fedoraproject |
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation fedora |
Incorrect handling of a confusable character in Omnibox in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted domain name. |
NVD-CWE-noinfo
|
CVE-2019-5776 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |
| 219844 | 6.5 |
MEDIUM
Network |
google debian redhat fedoraproject |
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation fedora |
Incorrect handling of a confusable character in Omnibox in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted domain name. |
NVD-CWE-noinfo
|
CVE-2019-5775 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |
| 219845 | 8.8 |
HIGH
Network |
google debian redhat fedoraproject |
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation fedora |
Omission of the .desktop filetype from the Safe Browsing checklist in SafeBrowsing in Google Chrome on Linux prior to 72.0.3626.81 allowed an attacker who convinced a user to download a .desktop file… |
CWE-862
Missing Authorization |
CVE-2019-5774 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |
| 219846 | 6.5 |
MEDIUM
Network |
google debian redhat fedoraproject |
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation fedora |
Insufficient origin validation in IndexedDB in Google Chrome prior to 72.0.3626.81 allowed a remote attacker who had compromised the renderer process to bypass same origin policy via a crafted HTML p… |
CWE-346
Origin Validation Error |
CVE-2019-5773 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |
| 219847 | 8.8 |
HIGH
Network |
google debian redhat fedoraproject |
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation fedora |
Sharing of objects over calls into JavaScript runtime in PDFium in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. |
CWE-787 CWE-416 Out-of-bounds Write Use After Free |
CVE-2019-5772 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |
| 219848 | 8.8 |
HIGH
Network |
google redhat fedoraproject |
chrome enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation fedora |
An incorrect JIT of GLSL shaders in SwiftShader in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to execute arbitrary code via a crafted HTML page. |
NVD-CWE-noinfo
|
CVE-2019-5771 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |
| 219849 | 8.8 |
HIGH
Network |
google debian redhat fedoraproject |
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation fedora |
Insufficient input validation in WebGL in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. |
CWE-125
Out-of-bounds Read |
CVE-2019-5770 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |
| 219850 | 8.8 |
HIGH
Network |
google redhat debian fedoraproject |
chrome enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation debian_linux fedora |
Incorrect handling of invalid end character position when front rendering in Blink in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to potentially exploit heap corruption via a crafte… |
CWE-20
Improper Input Validation |
CVE-2019-5769 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |