|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 2, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 245611 | 6.8 | 警告 | AVAST Software s.r.o. | - | avast! Home and Professional の aavmker4.sys における権限を取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-1625 | 2012-06-26 16:02 | 2008-04-2 | Show | GitHub Exploit DB Packet Storm |
| 245612 | 6.8 | 警告 | geertsen holdings inc | - | GeeCarts における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2008-1622 | 2012-06-26 16:02 | 2008-04-2 | Show | GitHub Exploit DB Packet Storm |
| 245613 | 4.3 | 警告 | geertsen holdings inc | - | GeeCarts におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-1621 | 2012-06-26 16:02 | 2008-04-2 | Show | GitHub Exploit DB Packet Storm |
| 245614 | 7.5 | 危険 | 2X Software | - | 2X ThinClientServer の 2X TFTP サービスにおけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2008-1620 | 2012-06-26 16:02 | 2008-04-2 | Show | GitHub Exploit DB Packet Storm |
| 245615 | 7.5 | 危険 | clever copy | - | Clever Copy の postview.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-1608 | 2012-06-26 16:02 | 2008-04-1 | Show | GitHub Exploit DB Packet Storm |
| 245616 | 6 | 警告 | elastic path | - | EP におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2008-1606 | 2012-06-26 16:02 | 2008-04-1 | Show | GitHub Exploit DB Packet Storm |
| 245617 | 7.5 | 危険 | comix | - | comix における任意のコマンドを実行される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2008-1568 | 2012-06-26 16:02 | 2008-03-31 | Show | GitHub Exploit DB Packet Storm |
| 245618 | 4.3 | 警告 | digiappz | - | Digiappz DigiDomain におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-1560 | 2012-06-26 16:02 | 2008-03-31 | Show | GitHub Exploit DB Packet Storm |
| 245619 | 6.8 | 警告 | Joomla! bernard gilly |
- | Joomla! の Bernard Gilly alphacontent コンポーネントにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-1559 | 2012-06-26 16:02 | 2008-03-31 | Show | GitHub Exploit DB Packet Storm |
| 245620 | 5 | 警告 | bolinos | - | BolinOS における重要な情報を取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2008-1557 | 2012-06-26 16:02 | 2008-03-31 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 2, 2026, 4:18 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 220411 | 8.8 |
HIGH
Network |
libsdl debian opensuse fedoraproject canonical |
simple_directmedia_layer debian_linux leap fedora ubuntu_linux |
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in InitMS_ADPCM in audio/SDL_wave.c (inside the wNumCoef loop). |
CWE-125
Out-of-bounds Read |
CVE-2019-7573 | 2024-11-21 13:48 | 2019-02-7 | Show | GitHub Exploit DB Packet Storm |
| 220412 | 8.8 |
HIGH
Network |
libsdl debian opensuse canonical fedoraproject |
simple_directmedia_layer debian_linux leap ubuntu_linux fedora |
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a buffer over-read in IMA_ADPCM_nibble in audio/SDL_wave.c. |
CWE-125
Out-of-bounds Read |
CVE-2019-7572 | 2024-11-21 13:48 | 2019-02-7 | Show | GitHub Exploit DB Packet Storm |
| 220413 | 6.5 |
MEDIUM
Network |
pbootcms | pbootcms | A CSRF vulnerability was found in PbootCMS v1.3.6 that can delete users via an admin.php/User/del/ucode/ URI. |
CWE-352
Origin Validation Error |
CVE-2019-7570 | 2024-11-21 13:48 | 2019-02-7 | Show | GitHub Exploit DB Packet Storm |
| 220414 | 8.8 |
HIGH
Network |
wdoyo | doyo | An issue was discovered in DOYO (aka doyocms) 2.3(20140425 update). There is a CSRF vulnerability that can add a super administrator account via admin.php?c=a_adminuser&a=add&run=1. |
CWE-352
Origin Validation Error |
CVE-2019-7569 | 2024-11-21 13:48 | 2019-02-7 | Show | GitHub Exploit DB Packet Storm |
| 220415 | 9.8 |
CRITICAL
Network |
baijiacms_project | baijiacms | An issue was discovered in baijiacms V4 that can result in time-based blind SQL injection to get data via the cate parameter in an index.php?act=index request. |
CWE-89
SQL Injection |
CVE-2019-7568 | 2024-11-21 13:48 | 2019-02-7 | Show | GitHub Exploit DB Packet Storm |
| 220416 | 6.1 |
MEDIUM
Network |
bijiadao | waimai_super_cms | An issue was discovered in Waimai Super Cms 20150505. admin.php?m=Member&a=adminaddsave has XSS via the username or password parameter. |
CWE-79
Cross-site Scripting |
CVE-2019-7567 | 2024-11-21 13:48 | 2019-02-7 | Show | GitHub Exploit DB Packet Storm |
| 220417 | 8.8 |
HIGH
Network |
cszcms | csz_cms | CSZ CMS 1.1.8 has CSRF via admin/users/new/add. |
CWE-352
Origin Validation Error |
CVE-2019-7566 | 2024-11-21 13:48 | 2019-02-7 | Show | GitHub Exploit DB Packet Storm |
| 220418 | 5.5 |
MEDIUM
Local |
boolector_project | boolector | In parser/btorsmt2.c in Boolector 3.0.0, opening a specially crafted input file leads to a use after free in get_failed_assumptions or btor_delete. |
CWE-416
Use After Free |
CVE-2019-7560 | 2024-11-21 13:48 | 2019-02-7 | Show | GitHub Exploit DB Packet Storm |
| 220419 | 5.5 |
MEDIUM
Local |
btor2tools_project | btor2tools | In btor2parser/btor2parser.c in Boolector Btor2Tools before 2019-01-15, opening a specially crafted input file leads to an out of bounds write in pusht_bfr. |
CWE-787
Out-of-bounds Write |
CVE-2019-7559 | 2024-11-21 13:48 | 2019-02-7 | Show | GitHub Exploit DB Packet Storm |
| 220420 | 7.8 |
HIGH
Local |
sqlalchemy debian opensuse redhat oracle |
sqlalchemy debian_linux leap backports_sle enterprise_linux_eus enterprise_linux_server_tus enterprise_linux_server_aus enterprise_linux communications_operations_monitor |
SQLAlchemy 1.2.17 has SQL Injection when the group_by parameter can be controlled. |
CWE-89
SQL Injection |
CVE-2019-7548 | 2024-11-21 13:48 | 2019-02-7 | Show | GitHub Exploit DB Packet Storm |