|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 11, 2026, 6:01 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 245511 | 7.5 | 危険 | call-center-software | - | Call Center Software における SQL インジェクションの脆弱性 | - | CVE-2006-7144 | 2012-06-26 15:38 | 2007-03-7 | Show | GitHub Exploit DB Packet Storm |
| 245512 | 5.8 | 警告 | call-center-software | - | Call Center Software におけるクロスサイトスクリプティングの脆弱性 | - | CVE-2006-7143 | 2012-06-26 15:38 | 2007-03-7 | Show | GitHub Exploit DB Packet Storm |
| 245513 | 10 | 危険 | cynux softwares | - | PHPMyDesk の pmd-config.php におけるディレクトリトラバーサルの脆弱性 | - | CVE-2006-7132 | 2012-06-26 15:38 | 2007-03-5 | Show | GitHub Exploit DB Packet Storm |
| 245514 | 7.5 | 危険 | DMXReady | - | DMXReady Site Engine Manager の index.asp における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2006-7118 | 2012-06-26 15:38 | 2007-03-5 | Show | GitHub Exploit DB Packet Storm |
| 245515 | 7.5 | 危険 | coalescent systems | - | Coalescent Systems freePBX の upgrade.php における PHP リモートファイルインクルージョンの脆弱性 | - | CVE-2006-7107 | 2012-06-26 15:38 | 2007-03-3 | Show | GitHub Exploit DB Packet Storm |
| 245516 | 6.4 | 警告 | ezonlinegallery | - | EZOnlineGallery におけるディレクトリトラバーサルの脆弱性 | - | CVE-2006-7103 | 2012-06-26 15:38 | 2007-03-3 | Show | GitHub Exploit DB Packet Storm |
| 245517 | 7.5 | 危険 | ban | - | Ban の connexion.php における SQL インジェクションの脆弱性 | - | CVE-2006-7089 | 2012-06-26 15:38 | 2007-03-2 | Show | GitHub Exploit DB Packet Storm |
| 245518 | 5 | 警告 | dotdeb | - | Dotdeb PHP の mail 関数における CRLF インジェクションの脆弱性 | - | CVE-2006-7087 | 2012-06-26 15:38 | 2007-03-2 | Show | GitHub Exploit DB Packet Storm |
| 245519 | 4.3 | 警告 | exv2 | - | exV2 のアバターアップロード機能におけるディレクトリトラバーサルの脆弱性 | - | CVE-2006-7080 | 2012-06-26 15:38 | 2007-03-2 | Show | GitHub Exploit DB Packet Storm |
| 245520 | 6.8 | 警告 | exv2 | - | exV2 の include/common.php における任意のコードを実行される脆弱性 | - | CVE-2006-7079 | 2012-06-26 15:38 | 2007-03-2 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 11, 2026, 4:09 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 219451 | 6.1 |
MEDIUM
Network |
igniterealtime | openfire | Ignite Realtime Openfire 4.4.1 allows XSS via the setup/setup-datasource-standard.jsp password parameter. |
CWE-79
Cross-site Scripting |
CVE-2019-20526 | 2024-11-21 13:38 | 2020-03-20 | Show | GitHub Exploit DB Packet Storm |
| 219452 | 6.1 |
MEDIUM
Network |
igniterealtime | openfire | Ignite Realtime Openfire 4.4.1 allows XSS via the setup/setup-datasource-standard.jsp driver parameter. |
CWE-79
Cross-site Scripting |
CVE-2019-20525 | 2024-11-21 13:38 | 2020-03-20 | Show | GitHub Exploit DB Packet Storm |
| 219453 | 6.1 |
MEDIUM
Network |
frappe | erpnext | ERPNext 11.1.47 allows reflected XSS via the PATH_INFO to the api/ URI. |
CWE-79
Cross-site Scripting |
CVE-2019-20521 | 2024-11-21 13:38 | 2020-03-20 | Show | GitHub Exploit DB Packet Storm |
| 219454 | 6.1 |
MEDIUM
Network |
frappe | erpnext | ERPNext 11.1.47 allows reflected XSS via the PATH_INFO to the api/method/ URI. |
CWE-79
Cross-site Scripting |
CVE-2019-20520 | 2024-11-21 13:38 | 2020-03-20 | Show | GitHub Exploit DB Packet Storm |
| 219455 | 6.1 |
MEDIUM
Network |
frappe | erpnext | ERPNext 11.1.47 allows reflected XSS via the PATH_INFO to the user/ URI, as demonstrated by a crafted e-mail address. |
CWE-79
Cross-site Scripting |
CVE-2019-20519 | 2024-11-21 13:38 | 2020-03-20 | Show | GitHub Exploit DB Packet Storm |
| 219456 | 6.1 |
MEDIUM
Network |
frappe | erpnext | ERPNext 11.1.47 allows reflected XSS via the PATH_INFO to the project/ URI. |
CWE-79
Cross-site Scripting |
CVE-2019-20518 | 2024-11-21 13:38 | 2020-03-20 | Show | GitHub Exploit DB Packet Storm |
| 219457 | 6.1 |
MEDIUM
Network |
frappe | erpnext | ERPNext 11.1.47 allows reflected XSS via the PATH_INFO to the contact/ URI. |
CWE-79
Cross-site Scripting |
CVE-2019-20517 | 2024-11-21 13:38 | 2020-03-20 | Show | GitHub Exploit DB Packet Storm |
| 219458 | 6.1 |
MEDIUM
Network |
frappe | erpnext | ERPNext 11.1.47 allows reflected XSS via the PATH_INFO to the blog/ URI. |
CWE-79
Cross-site Scripting |
CVE-2019-20516 | 2024-11-21 13:38 | 2020-03-20 | Show | GitHub Exploit DB Packet Storm |
| 219459 | 6.1 |
MEDIUM
Network |
frappe | erpnext | ERPNext 11.1.47 allows reflected XSS via the PATH_INFO to the addresses/ URI. |
CWE-79
Cross-site Scripting |
CVE-2019-20515 | 2024-11-21 13:38 | 2020-03-20 | Show | GitHub Exploit DB Packet Storm |
| 219460 | 6.1 |
MEDIUM
Network |
frappe | erpnext | ERPNext 11.1.47 allows reflected XSS via the PATH_INFO to the address/ URI. |
CWE-79
Cross-site Scripting |
CVE-2019-20514 | 2024-11-21 13:38 | 2020-03-20 | Show | GitHub Exploit DB Packet Storm |