|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 15, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 249311 | 6.8 | 警告 | FontForge project | - | FontForge におけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2010-4259 | 2012-03-27 18:42 | 2010-12-7 | Show | GitHub Exploit DB Packet Storm |
| 249312 | 6 | 警告 | WordPress.org | - | WordPress の do_trackbacks 関数における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4257 | 2012-03-27 18:42 | 2010-11-30 | Show | GitHub Exploit DB Packet Storm |
| 249313 | 7.5 | 危険 | Mono Project Novell |
- | Mono における任意のコードを実行される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2010-4254 | 2012-03-27 18:42 | 2010-11-16 | Show | GitHub Exploit DB Packet Storm |
| 249314 | 4.3 | 警告 | Electric Sheep Fencing | - | pfSense の graph.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-4246 | 2012-03-27 18:42 | 2010-12-7 | Show | GitHub Exploit DB Packet Storm |
| 249315 | 6.9 | 警告 | IBM | - | IBM OmniFind Enterprise Edition の estaskwrapper における権限を取得される脆弱性 |
CWE-Other
その他 |
CVE-2010-4236 | 2012-03-27 18:42 | 2010-11-12 | Show | GitHub Exploit DB Packet Storm |
| 249316 | 7.8 | 危険 | camtron tecvoz |
- | Camtron CMNC-200 Full HD IP Camera の Web サーバにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2010-4234 | 2012-03-27 18:42 | 2010-11-16 | Show | GitHub Exploit DB Packet Storm |
| 249317 | 10 | 危険 | camtron tecvoz |
- | Camtron CMNC-200 Full HD IP Camera の Linux インストールにおけるアクセスを取得される脆弱性 |
CWE-255
証明書・パスワード管理 |
CVE-2010-4233 | 2012-03-27 18:42 | 2010-11-16 | Show | GitHub Exploit DB Packet Storm |
| 249318 | 10 | 危険 | camtron tecvoz |
- | Camtron CMNC-200 Full HD IP Camera の Web ベース管理インターフェースにおける認証を回避される脆弱性 |
CWE-287
不適切な認証 |
CVE-2010-4232 | 2012-03-27 18:42 | 2010-11-16 | Show | GitHub Exploit DB Packet Storm |
| 249319 | 4.9 | 警告 | Linux | - | Linux kernel の pipe_fcntl 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2010-4256 | 2012-03-27 18:42 | 2011-01-25 | Show | GitHub Exploit DB Packet Storm |
| 249320 | 10 | 危険 | リアルネットワークス | - | RealNetworks Helix Server および Helix Mobile Server における任意のコードを実行される脆弱性 |
CWE-134
書式文字列の問題 |
CVE-2010-4235 | 2012-03-27 18:42 | 2011-03-31 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 15, 2026, 4:28 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 199441 | 7.5 |
HIGH
Network |
grandstream |
ucm6202_firmware ucm6204_firmware ucm6208_firmware |
The Grandstream UCM6200 series before 1.0.20.22 is vulnerable to an SQL injection via the CTI server on port 8888. A remote unauthenticated attacker can invoke the challenge action with a crafted use… |
CWE-89
SQL Injection |
CVE-2020-5726 | 2024-11-21 14:34 | 2020-03-31 | Show | GitHub Exploit DB Packet Storm |
| 199442 | 5.9 |
MEDIUM
Network |
grandstream |
ucm6202_firmware ucm6204_firmware ucm6208_firmware |
The Grandstream UCM6200 series before 1.0.20.22 is vulnerable to an SQL injection via the HTTP server's websockify endpoint. A remote unauthenticated attacker can invoke the login action with a craft… |
CWE-89
SQL Injection |
CVE-2020-5725 | 2024-11-21 14:34 | 2020-03-31 | Show | GitHub Exploit DB Packet Storm |
| 199443 | 7.5 |
HIGH
Network |
grandstream |
ucm6202_firmware ucm6204_firmware ucm6208_firmware |
The Grandstream UCM6200 series before 1.0.20.22 is vulnerable to an SQL injection via the HTTP server's websockify endpoint. A remote unauthenticated attacker can invoke the challenge action with a c… |
CWE-89
SQL Injection |
CVE-2020-5724 | 2024-11-21 14:34 | 2020-03-31 | Show | GitHub Exploit DB Packet Storm |
| 199444 | 9.8 |
CRITICAL
Network |
grandstream |
ucm6202_firmware ucm6204_firmware ucm6208_firmware |
The UCM6200 series 1.0.20.22 and below stores unencrypted user passwords in an SQLite database. This could allow an attacker to retrieve all passwords and possibly gain elevated privileges. |
CWE-312
Cleartext Storage of Sensitive Information |
CVE-2020-5723 | 2024-11-21 14:34 | 2020-03-31 | Show | GitHub Exploit DB Packet Storm |
| 199445 | 7.5 |
HIGH
Network |
mitsubishielectric |
cr800-q_firmware fx3g_firmware fx3gc_firmware fx3s_firmware fx3u_firmware fx3uc_firmware fx5u_firmware fx5uc_firmware fx5uj_firmware l02cpu_firmware l02cpu-p_firmware | When MELSOFT transmission port (UDP/IP) of Mitsubishi Electric MELSEC iQ-R series (all versions), MELSEC iQ-F series (all versions), MELSEC Q series (all versions), MELSEC L series (all versions), an… |
CWE-400
Uncontrolled Resource Consumption |
CVE-2020-5527 | 2024-11-21 14:34 | 2020-03-30 | Show | GitHub Exploit DB Packet Storm |
| 199446 | 8.8 |
HIGH
Adjacent |
toyota | display_control_unit | Toyota 2017 Model Year DCU (Display Control Unit) allows an unauthenticated attacker within Bluetooth range to cause a denial of service attack and/or execute an arbitrary command. The affected DCUs … |
CWE-276
Incorrect Default Permissions |
CVE-2020-5551 | 2024-11-21 14:34 | 2020-03-30 | Show | GitHub Exploit DB Packet Storm |
| 199447 | 8.6 |
HIGH
Network |
f5 netapp |
nginx_controller cloud_backup |
In NGINX Controller versions prior to 3.2.0, an unauthenticated attacker with network access to the Controller API can create unprivileged user accounts. The user which is created is only able to upl… |
NVD-CWE-noinfo
|
CVE-2020-5863 | 2024-11-21 14:34 | 2020-03-28 | Show | GitHub Exploit DB Packet Storm |
| 199448 | 7.5 |
HIGH
Network |
f5 |
big-ip_access_policy_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_application_acceleration_manager big-ip_application_security_manager big-ip_domain_name_system … |
On BIG-IP 15.1.0-15.1.0.1, 15.0.0-15.0.1.1, and 14.1.0-14.1.2.2, under certain conditions, TMM may crash or stop processing new traffic with the DPDK/ENA driver on AWS systems while sending traffic. … |
NVD-CWE-noinfo
|
CVE-2020-5862 | 2024-11-21 14:34 | 2020-03-28 | Show | GitHub Exploit DB Packet Storm |
| 199449 | 7.5 |
HIGH
Network |
f5 |
big-ip_access_policy_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_application_acceleration_manager big-ip_application_security_manager big-ip_domain_name_system … |
On BIG-IP 15.1.0.1, specially formatted HTTP/3 messages may cause TMM to produce a core file. |
NVD-CWE-noinfo
|
CVE-2020-5859 | 2024-11-21 14:34 | 2020-03-28 | Show | GitHub Exploit DB Packet Storm |
| 199450 | 7.5 |
HIGH
Network |
f5 |
big-ip_access_policy_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_application_acceleration_manager big-ip_application_security_manager big-ip_domain_name_system … |
On BIG-IP 12.1.0-12.1.5, the TMM process may produce a core file in some cases when Ram Cache incorrectly optimizes stored data resulting in memory errors. |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2020-5861 | 2024-11-21 14:34 | 2020-03-28 | Show | GitHub Exploit DB Packet Storm |