|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 16, 2026, 4:01 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 248051 | 5 | 警告 | aria | - | aria の arias/help/effect.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2008-0332 | 2012-06-26 15:54 | 2008-01-17 | Show | GitHub Exploit DB Packet Storm |
| 248052 | 7.8 | 危険 | funkwerk | - | Funkwerk System Software におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2008-0331 | 2012-06-26 15:54 | 2008-01-17 | Show | GitHub Exploit DB Packet Storm |
| 248053 | 7.5 | 危険 | fascript | - | FaScript FaName の page.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-0328 | 2012-06-26 15:54 | 2008-01-17 | Show | GitHub Exploit DB Packet Storm |
| 248054 | 7.5 | 危険 | fascript | - | FaScript FaMp3 の show.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-0327 | 2012-06-26 15:54 | 2008-01-17 | Show | GitHub Exploit DB Packet Storm |
| 248055 | 7.5 | 危険 | fascript | - | FaScript FaPersianHack の class/show.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-0326 | 2012-06-26 15:54 | 2008-01-17 | Show | GitHub Exploit DB Packet Storm |
| 248056 | 7.5 | 危険 | fascript | - | FaScript FaPersian Petition の show.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-0325 | 2012-06-26 15:54 | 2008-01-17 | Show | GitHub Exploit DB Packet Storm |
| 248057 | 9.3 | 危険 | Borland Software Corporation | - | Borland CaliberRM 2006 の PGMWebHandler::parse_request 関数におけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2008-0311 | 2012-06-26 15:54 | 2008-04-6 | Show | GitHub Exploit DB Packet Storm |
| 248058 | 7.2 | 危険 | Debian | - | apt-listchanges の apt-listchanges.py における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2008-0302 | 2012-06-26 15:54 | 2008-01-16 | Show | GitHub Exploit DB Packet Storm |
| 248059 | 4.3 | 警告 | アップル | - | Apple Safari で使用される KHTML WebKit におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2008-0298 | 2012-06-26 15:54 | 2008-01-16 | Show | GitHub Exploit DB Packet Storm |
| 248060 | 5 | 警告 | freeseat | - | FreeSeat の seat-locking 実装における席を 1 回以上予約される脆弱性 |
CWE-DesignError
|
CVE-2008-0294 | 2012-06-26 15:54 | 2008-01-16 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 16, 2026, 4:13 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 200051 | 8.6 |
HIGH
Network |
xstream_project debian fedoraproject oracle |
xstream debian_linux fedora banking_platform webcenter_portal communications_unified_inventory_management communications_policy_management banking_virtual_account_management c… |
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to request data from internal resour… | - | CVE-2021-21349 | 2024-11-21 14:48 | 2021-03-23 | Show | GitHub Exploit DB Packet Storm |
| 200052 | 7.5 |
HIGH
Network |
xstream_project debian fedoraproject oracle |
xstream debian_linux fedora banking_platform webcenter_portal communications_unified_inventory_management communications_policy_management banking_virtual_account_management c… |
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to occupy a thread that consumes max… |
CWE-400
Uncontrolled Resource Consumption |
CVE-2021-21348 | 2024-11-21 14:48 | 2021-03-23 | Show | GitHub Exploit DB Packet Storm |
| 200053 | 9.8 |
CRITICAL
Network |
xstream_project debian fedoraproject oracle |
xstream debian_linux fedora banking_platform weblogic_server webcenter_portal communications_unified_inventory_management communications_policy_management banking_virtual_acco… |
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to load and execute arbitrary code f… | - | CVE-2021-21347 | 2024-11-21 14:48 | 2021-03-23 | Show | GitHub Exploit DB Packet Storm |
| 200054 | 9.8 |
CRITICAL
Network |
xstream_project debian fedoraproject oracle |
xstream debian_linux fedora banking_platform webcenter_portal bi_publisher communications_unified_inventory_management communications_policy_management banking_virtual_account… |
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to load and execute arbitrary code f… | - | CVE-2021-21346 | 2024-11-21 14:48 | 2021-03-23 | Show | GitHub Exploit DB Packet Storm |
| 200055 | 9.9 |
CRITICAL
Network |
xstream_project debian fedoraproject oracle |
xstream debian_linux fedora banking_platform webcenter_portal communications_unified_inventory_management communications_policy_management peoplesoft_enterprise_peopletools ba… |
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker who has sufficient rights to execute… |
CWE-78
OS Command |
CVE-2021-21345 | 2024-11-21 14:48 | 2021-03-23 | Show | GitHub Exploit DB Packet Storm |
| 200056 | 9.8 |
CRITICAL
Network |
xstream_project debian fedoraproject oracle |
xstream debian_linux fedora banking_platform webcenter_portal communications_unified_inventory_management communications_policy_management banking_virtual_account_management c… |
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability which may allow a remote attacker to load and execute arbitrary code f… | - | CVE-2021-21344 | 2024-11-21 14:48 | 2021-03-23 | Show | GitHub Exploit DB Packet Storm |
| 200057 | 7.5 |
HIGH
Network |
xstream_project debian fedoraproject oracle |
xstream debian_linux fedora banking_platform webcenter_portal communications_unified_inventory_management communications_policy_management banking_virtual_account_management c… |
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability where the processed stream at unmarshalling time contains type informa… | - | CVE-2021-21343 | 2024-11-21 14:48 | 2021-03-23 | Show | GitHub Exploit DB Packet Storm |
| 200058 | 9.1 |
CRITICAL
Network |
xstream_project debian fedoraproject oracle |
xstream debian_linux fedora banking_platform webcenter_portal communications_unified_inventory_management communications_policy_management banking_virtual_account_management b… |
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulnerability where the processed stream at unmarshalling time contains type informa… | - | CVE-2021-21342 | 2024-11-21 14:48 | 2021-03-23 | Show | GitHub Exploit DB Packet Storm |
| 200059 | 7.5 |
HIGH
Network |
xstream_project debian fedoraproject oracle |
xstream debian_linux fedora banking_platform webcenter_portal communications_unified_inventory_management communications_billing_and_revenue_management_elastic_charging_engine bu… |
XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is vulnerability which may allow a remote attacker to allocate 100% CPU time on the targe… | - | CVE-2021-21341 | 2024-11-21 14:48 | 2021-03-23 | Show | GitHub Exploit DB Packet Storm |
| 200060 | 4.3 |
MEDIUM
Network |
otrs |
faq otrs |
Agents are able to see linked FAQ articles without permissions (defined in FAQ Category). This issue affects: FAQ version 6.0.29 and prior versions, OTRS version 7.0.24 and prior versions. |
CWE-276
Incorrect Default Permissions |
CVE-2021-21438 | 2024-11-21 14:48 | 2021-03-22 | Show | GitHub Exploit DB Packet Storm |