|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 18, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 249371 | 7.5 | 危険 | Ruby on Rails project | - | Ruby on Rails の actionpack/lib/action_view/template/resolver.rb におけるアクセス制限を回避する脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-0449 | 2012-03-27 18:42 | 2011-02-8 | Show | GitHub Exploit DB Packet Storm |
| 249372 | 7.5 | 危険 | Ruby on Rails project | - | Ruby on Rails における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-0448 | 2012-03-27 18:42 | 2011-02-8 | Show | GitHub Exploit DB Packet Storm |
| 249373 | 6.8 | 警告 | Ruby on Rails project | - | Ruby on Rails におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2011-0447 | 2012-03-27 18:42 | 2011-02-8 | Show | GitHub Exploit DB Packet Storm |
| 249374 | 4.3 | 警告 | Ruby on Rails project | - | Ruby on Rails の mail_to ヘルパーにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-0446 | 2012-03-27 18:42 | 2011-02-9 | Show | GitHub Exploit DB Packet Storm |
| 249375 | 6.8 | 警告 | TinyBB | - | TinyBB における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-0443 | 2012-03-27 18:42 | 2011-01-12 | Show | GitHub Exploit DB Packet Storm |
| 249376 | 3.5 | 注意 | DELL EMC (旧 EMC Corporation) | - | EMC Avamar のサービスユーティリティにおける重要な情報を取得される脆弱性 |
CWE-310
暗号の問題 |
CVE-2011-0442 | 2012-03-27 18:42 | 2011-03-16 | Show | GitHub Exploit DB Packet Storm |
| 249377 | 6.3 | 警告 | The PHP Group | - | PHP の Debian GNU/Linux /etc/cron.d/php5 クーロンジョブにおける任意のファイルを削除される脆弱性 |
CWE-59
リンク解釈の問題 |
CVE-2011-0441 | 2012-03-27 18:42 | 2011-03-29 | Show | GitHub Exploit DB Packet Storm |
| 249378 | 5.8 | 警告 | Mahara | - | Mahara におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2011-0440 | 2012-03-27 18:42 | 2011-03-28 | Show | GitHub Exploit DB Packet Storm |
| 249379 | 4.3 | 警告 | Mahara | - | Mahara におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-0439 | 2012-03-27 18:42 | 2011-03-28 | Show | GitHub Exploit DB Packet Storm |
| 249380 | 6.8 | 警告 | arthurdejong | - | nss-pam-ldapd PAM モジュールにおける認証を回避される脆弱性 |
CWE-287
不適切な認証 |
CVE-2011-0438 | 2012-03-27 18:42 | 2011-03-15 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 18, 2026, 4:12 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 211051 | 7.5 |
HIGH
Network |
libvnc_project canonical debian siemens opensuse |
libvncserver ubuntu_linux debian_linux simatic_itc1500_firmware simatic_itc1500_pro_firmware simatic_itc1900_firmware simatic_itc1900_pro_firmware simatic_itc2200_firmware sim… |
An issue was discovered in LibVNCServer before 0.9.13. An improperly closed TCP connection causes an infinite loop in libvncclient/sockets.c. |
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop') |
CVE-2020-14398 | 2024-11-21 14:03 | 2020-06-18 | Show | GitHub Exploit DB Packet Storm |
| 211052 | 7.5 |
HIGH
Network |
libvnc_project canonical debian siemens opensuse |
libvncserver ubuntu_linux debian_linux simatic_itc1500_firmware simatic_itc1500_pro_firmware simatic_itc1900_firmware simatic_itc1900_pro_firmware simatic_itc2200_firmware sim… |
An issue was discovered in LibVNCServer before 0.9.13. libvncserver/rfbregion.c has a NULL pointer dereference. |
CWE-476
NULL Pointer Dereference |
CVE-2020-14397 | 2024-11-21 14:03 | 2020-06-18 | Show | GitHub Exploit DB Packet Storm |
| 211053 | 7.5 |
HIGH
Network |
libvnc_project canonical debian siemens |
libvncserver ubuntu_linux debian_linux simatic_itc1500_firmware simatic_itc1500_pro_firmware simatic_itc1900_firmware simatic_itc1900_pro_firmware simatic_itc2200_firmware sim… |
An issue was discovered in LibVNCServer before 0.9.13. libvncclient/tls_openssl.c has a NULL pointer dereference. |
CWE-476
NULL Pointer Dereference |
CVE-2020-14396 | 2024-11-21 14:03 | 2020-06-18 | Show | GitHub Exploit DB Packet Storm |
| 211054 | 9.8 |
CRITICAL
Network |
irfanview | b3d | IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+1cbf heap-based out-of-bounds write. |
CWE-787
Out-of-bounds Write |
CVE-2020-13880 | 2024-11-21 14:02 | 2024-01-5 | Show | GitHub Exploit DB Packet Storm |
| 211055 | 9.8 |
CRITICAL
Network |
irfanview | b3d | IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+214f heap-based out-of-bounds write. |
CWE-787
Out-of-bounds Write |
CVE-2020-13879 | 2024-11-21 14:02 | 2024-01-5 | Show | GitHub Exploit DB Packet Storm |
| 211056 | 9.8 |
CRITICAL
Network |
irfanview | b3d | IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+27ef heap-based out-of-bounds write. |
CWE-787
Out-of-bounds Write |
CVE-2020-13878 | 2024-11-21 14:02 | 2024-01-5 | Show | GitHub Exploit DB Packet Storm |
| 211057 | 7.5 |
HIGH
Network |
mi | xiaomi_router_firmware | When Xiaomi router firmware is updated in 2020, there is an unauthenticated API that can reveal WIFI password vulnerability. This vulnerability is caused by the lack of access control policies on som… |
CWE-306
Missing Authentication for Critical Function |
CVE-2020-14140 | 2024-11-21 14:02 | 2023-03-30 | Show | GitHub Exploit DB Packet Storm |
| 211058 | 9.8 |
CRITICAL
Network |
mi | xiaomi | The Xiaomi Security Center expresses heartfelt thanks to ADLab of VenusTech ! At the same time, we also welcome more outstanding and professional security experts and security teams to join the Mi Se… |
NVD-CWE-noinfo
|
CVE-2020-14131 | 2024-11-21 14:02 | 2022-10-12 | Show | GitHub Exploit DB Packet Storm |
| 211059 | 9.8 |
CRITICAL
Network |
mi | xiaomi | A logic vulnerability exists in a Xiaomi product. The vulnerability is caused by an identity verification failure, which can be exploited by an attacker who can obtain a brief elevation of privilege. |
NVD-CWE-noinfo
|
CVE-2020-14129 | 2024-11-21 14:02 | 2022-10-12 | Show | GitHub Exploit DB Packet Storm |
| 211060 | 7.5 |
HIGH
Network |
mi | sound | Information leakage vulnerability exists in the Mi Sound APP. This vulnerability is caused by illegal calls of some sensitive JS interfaces, which can be exploited by attackers to leak sensitive info… |
NVD-CWE-noinfo
|
CVE-2020-14126 | 2024-11-21 14:02 | 2022-07-23 | Show | GitHub Exploit DB Packet Storm |