|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 19, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 249171 | 2.6 | 注意 | reyero | - | Drupal 用の Messaging モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-1066 | 2012-03-27 18:43 | 2011-02-16 | Show | GitHub Exploit DB Packet Storm |
| 249172 | 9.3 | 危険 | pipi | - | PIPI Player の PIPIWebPlayer ActiveX コントロールにおけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2011-1065 | 2012-03-27 18:43 | 2011-02-22 | Show | GitHub Exploit DB Packet Storm |
| 249173 | 6.8 | 警告 | Qibosoft | - | qibosoft Qi Bo CMS の member/list.php におけるSQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-1064 | 2012-03-27 18:43 | 2011-02-22 | Show | GitHub Exploit DB Packet Storm |
| 249174 | 4.3 | 警告 | cherry-software | - | Cherry-Design Photopad におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-1063 | 2012-03-27 18:43 | 2011-02-22 | Show | GitHub Exploit DB Packet Storm |
| 249175 | 4.3 | 警告 | taskfreak | - | TaskFreak! の include/html/header.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-1062 | 2012-03-27 18:43 | 2011-02-22 | Show | GitHub Exploit DB Packet Storm |
| 249176 | 7.5 | 危険 | webmastersite | - | WSN Guest の memberlist.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-1061 | 2012-03-27 18:43 | 2011-02-22 | Show | GitHub Exploit DB Packet Storm |
| 249177 | 7.5 | 危険 | webmastersite | - | WSN Guest の member 関数における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-1060 | 2012-03-27 18:43 | 2011-02-22 | Show | GitHub Exploit DB Packet Storm |
| 249178 | 4.3 | 警告 | アップル |
- | Google Chrome および他の製品で使用される WebKit の WebCore におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2011-1059 | 2012-03-27 18:43 | 2011-02-22 | Show | GitHub Exploit DB Packet Storm |
| 249179 | 2.6 | 注意 | MoinMoin | - | MoinMoin の rst パーサーにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-1058 | 2012-03-27 18:43 | 2011-02-22 | Show | GitHub Exploit DB Packet Storm |
| 249180 | 6.2 | 警告 | マイクロソフト metasploit |
- | Metasploit Framework のインストーラにおける権限を取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-1057 | 2012-03-27 18:43 | 2011-02-21 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 19, 2026, 4:16 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 198371 | 9.8 |
CRITICAL
Network |
connie-lang_project | connie-lang | The package connie-lang before 0.1.1 are vulnerable to Prototype Pollution in the configuration language library used by connie. |
CWE-1321
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') |
CVE-2020-7706 | 2024-11-21 14:37 | 2020-08-18 | Show | GitHub Exploit DB Packet Storm |
| 198372 | 9.8 |
CRITICAL
Network |
linux-cmdline_project | linux-cmdline | The package linux-cmdline before 1.0.1 are vulnerable to Prototype Pollution via the constructor. |
CWE-1321
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') |
CVE-2020-7704 | 2024-11-21 14:37 | 2020-08-18 | Show | GitHub Exploit DB Packet Storm |
| 198373 | 9.8 |
CRITICAL
Network |
nis-utils_project | nis-utils | All versions of package nis-utils are vulnerable to Prototype Pollution via the setValue function. |
CWE-1321
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') |
CVE-2020-7703 | 2024-11-21 14:37 | 2020-08-18 | Show | GitHub Exploit DB Packet Storm |
| 198374 | 9.8 |
CRITICAL
Network |
templ8_project | templ8 | All versions of package templ8 are vulnerable to Prototype Pollution via the parse function. |
CWE-1321
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') |
CVE-2020-7702 | 2024-11-21 14:37 | 2020-08-17 | Show | GitHub Exploit DB Packet Storm |
| 198375 | 7.8 |
HIGH
Local |
siemens | automation_license_manager | A vulnerability has been identified in Automation License Manager 5 (All versions), Automation License Manager 6 (All versions < V6.0.8). The application does not properly validate the users' privile… |
CWE-863
Incorrect Authorization |
CVE-2020-7583 | 2024-11-21 14:37 | 2020-08-15 | Show | GitHub Exploit DB Packet Storm |
| 198376 | 9.8 |
CRITICAL
Network |
springtree | madlib-object-utils | madlib-object-utils before 0.1.7 is vulnerable to Prototype Pollution via setValue. |
CWE-1321
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') |
CVE-2020-7701 | 2024-11-21 14:37 | 2020-08-15 | Show | GitHub Exploit DB Packet Storm |
| 198377 | 9.8 |
CRITICAL
Network |
php.js_project | php.js | All versions of phpjs are vulnerable to Prototype Pollution via parse_str. |
CWE-1321
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') |
CVE-2020-7700 | 2024-11-21 14:37 | 2020-08-15 | Show | GitHub Exploit DB Packet Storm |
| 198378 | 7.3 |
HIGH
Local |
philips | smartcontrol | An Uncontrolled Search Path Element (CWE-427) vulnerability in SmartControl version 4.3.15 and versions released before April 15, 2020 may allow an authenticated user to escalate privileges by placin… |
CWE-427
Uncontrolled Search Path Element |
CVE-2020-7360 | 2024-11-21 14:37 | 2020-08-14 | Show | GitHub Exploit DB Packet Storm |
| 198379 | 5.2 |
MEDIUM
Local |
mcafee | data_loss_prevention | Unprotected Storage of Credentials vulnerability in McAfee Data Loss Prevention (DLP) for Mac prior to 11.5.2 allows local users to gain access to the RiskDB username and password via unprotected log… |
CWE-522
Insufficiently Protected Credentials |
CVE-2020-7307 | 2024-11-21 14:37 | 2020-08-13 | Show | GitHub Exploit DB Packet Storm |
| 198380 | 5.2 |
MEDIUM
Local |
mcafee | data_loss_prevention | Unprotected Storage of Credentials vulnerability in McAfee Data Loss Prevention (DLP) for Mac prior to 11.5.2 allows local users to gain access to the ADRMS username and password via unprotected log … |
CWE-522
Insufficiently Protected Credentials |
CVE-2020-7306 | 2024-11-21 14:37 | 2020-08-13 | Show | GitHub Exploit DB Packet Storm |