|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 22, 2026, 6:01 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 247831 | 4.3 | 警告 | goodlyrics | - | buymyscripts Lyrics Script の search_results.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-4672 | 2012-06-26 16:02 | 2008-10-22 | Show | GitHub Exploit DB Packet Storm |
| 247832 | 4.3 | 警告 | ed putal | - | Ed Pudol Clickbank Portal の search.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-4670 | 2012-06-26 16:02 | 2008-10-22 | Show | GitHub Exploit DB Packet Storm |
| 247833 | 4.3 | 警告 | dan fletcher | - | Dan Fletcher Recipe Script の search.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-4669 | 2012-06-26 16:02 | 2008-10-22 | Show | GitHub Exploit DB Packet Storm |
| 247834 | 7.5 | 危険 | arabcms | - | ArabCMS の rss.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2008-4667 | 2012-06-26 16:02 | 2008-10-22 | Show | GitHub Exploit DB Packet Storm |
| 247835 | 6.8 | 警告 | deeserver | - | Ultimate Webboard の webboard.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-4666 | 2012-06-26 16:02 | 2008-10-22 | Show | GitHub Exploit DB Packet Storm |
| 247836 | 7.5 | 危険 | datingpro | - | PG Matchmaking における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-4665 | 2012-06-26 16:02 | 2008-10-22 | Show | GitHub Exploit DB Packet Storm |
| 247837 | 9.3 | 危険 | Dart Communications | - | ActiveX 用の Dart Communications PowerTCP FTP の ActiveX コントロールにおけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2008-4652 | 2012-06-26 16:02 | 2008-10-21 | Show | GitHub Exploit DB Packet Storm |
| 247838 | 7.5 | 危険 | Elxis | - | Elxis CMS におけるセッションをハイジャックされる脆弱性 |
CWE-287
不適切な認証 |
CVE-2008-4649 | 2012-06-26 16:02 | 2008-10-21 | Show | GitHub Exploit DB Packet Storm |
| 247839 | 4.3 | 警告 | Elxis | - | Elxis CMS の index.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-4648 | 2012-06-26 16:02 | 2008-10-21 | Show | GitHub Exploit DB Packet Storm |
| 247840 | 7.5 | 危険 | astrospaces | - | AstroSPACES の profile.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-4642 | 2012-06-26 16:02 | 2008-10-21 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 23, 2026, 4 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 211411 | 9.1 |
CRITICAL
Network |
microchip | mplab_network_creator | In Microchip MPLAB Net 3.6.1, TCP ISNs are improperly random. |
CWE-330
Use of Insufficiently Random Values |
CVE-2020-27636 | 2024-11-21 14:21 | 2023-10-11 | Show | GitHub Exploit DB Packet Storm |
| 211412 | 9.1 |
CRITICAL
Network |
capgemini | picotcp | In PicoTCP 1.7.0, TCP ISNs are improperly random. |
CWE-330
Use of Insufficiently Random Values |
CVE-2020-27635 | 2024-11-21 14:21 | 2023-10-11 | Show | GitHub Exploit DB Packet Storm |
| 211413 | 9.1 |
CRITICAL
Network |
contiki-ng | contiki-ng | In Contiki 4.5, TCP ISNs are improperly random. |
CWE-330
Use of Insufficiently Random Values |
CVE-2020-27634 | 2024-11-21 14:21 | 2023-10-11 | Show | GitHub Exploit DB Packet Storm |
| 211414 | 9.1 |
CRITICAL
Network |
butok | fnet | In FNET 4.6.3, TCP ISNs are improperly random. |
CWE-330
Use of Insufficiently Random Values |
CVE-2020-27633 | 2024-11-21 14:21 | 2023-10-11 | Show | GitHub Exploit DB Packet Storm |
| 211415 | 9.8 |
CRITICAL
Network |
oryx-embedded | cyclonetcp | In Oryx CycloneTCP 1.9.6, TCP ISNs are improperly random. |
CWE-330
Use of Insufficiently Random Values |
CVE-2020-27631 | 2024-11-21 14:21 | 2023-10-11 | Show | GitHub Exploit DB Packet Storm |
| 211416 | 6.1 |
MEDIUM
Network |
humaxdigital | hgb10r-02_firmware | Cross Site Scripting (XSS) vulnerability in wlscanresults.html in Humax HGB10R-02 BRGCAB version 1.0.03, allows local attackers to execute arbitrary code. |
CWE-79
Cross-site Scripting |
CVE-2020-27366 | 2024-11-21 14:21 | 2023-08-29 | Show | GitHub Exploit DB Packet Storm |
| 211417 | 4.4 |
MEDIUM
Local |
fedoraproject | fedora_linux_kernel | A Use After Free vulnerability in Fedora Linux kernel 5.9.0-rc9 allows attackers to obatin sensitive information via vgacon_invert_region() function. |
CWE-416
Use After Free |
CVE-2020-27418 | 2024-11-21 14:21 | 2023-08-23 | Show | GitHub Exploit DB Packet Storm |
| 211418 | 9.8 |
CRITICAL
Network |
foldingathome | client_advanced_control | An issue was discovered in FoldingAtHome Client Advanced Control GUI before commit 9b619ae64443997948a36dda01b420578de1af77, allows remote attackers to execute arbitrary code via crafted payload to f… |
NVD-CWE-noinfo
|
CVE-2020-27544 | 2024-11-21 14:21 | 2023-08-11 | Show | GitHub Exploit DB Packet Storm |
| 211419 | 9.1 |
CRITICAL
Network |
zrlog | zrlog | Directory Traversal vulnerability in delete function in admin.api.TemplateController in ZrLog version 2.1.15, allows remote attackers to delete arbitrary files and cause a denial of service (DoS). |
CWE-22
Path Traversal |
CVE-2020-27514 | 2024-11-21 14:21 | 2023-08-11 | Show | GitHub Exploit DB Packet Storm |
| 211420 | 6.1 |
MEDIUM
Network |
zohocorp | manageengine_password_manager_pro | Cross Site Scripting (XSS) vulnerability in Query Report feature in Zoho ManageEngine Password Manager Pro version 11001, allows remote attackers to execute arbitrary code and steal cookies via craft… |
CWE-79
Cross-site Scripting |
CVE-2020-27449 | 2024-11-21 14:21 | 2023-08-11 | Show | GitHub Exploit DB Packet Storm |