|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 21, 2026, 4 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 252371 | 4.3 | 警告 | Plone Foundation | - | Plone におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-1948 | 2012-03-27 18:43 | 2011-06-6 | Show | GitHub Exploit DB Packet Storm |
| 252372 | 5 | 警告 | Fetchmail Project | - | fetchmail におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2011-1947 | 2012-03-27 18:43 | 2011-06-2 | Show | GitHub Exploit DB Packet Storm |
| 252373 | 7.2 | 危険 | hongli lai | - | libgnomesu の gnomesu-pam-backend における権限を取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-1946 | 2012-03-27 18:43 | 2011-07-7 | Show | GitHub Exploit DB Packet Storm |
| 252374 | 2.1 | 注意 | Fedora Project レッドハット |
- | Fedora の NetworkManager パッケージの libnm-util の destroy_one_secret 関数における重要な情報を取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2011-1943 | 2012-03-27 18:43 | 2011-06-14 | Show | GitHub Exploit DB Packet Storm |
| 252375 | 6.8 | 警告 | VideoLAN FFmpeg Libav |
- | VideoLAN VLC メディアプレイヤーなどの製品で使用される FFmpeg および libav の Sunplus SP5X JPEG デコーダにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-119
バッファエラー |
CVE-2011-1931 | 2012-03-27 18:43 | 2011-07-7 | Show | GitHub Exploit DB Packet Storm |
| 252376 | 5 | 警告 | Wouter Verhelst | - | nbd-server の nbd-server.c におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-Other
その他 |
CVE-2011-1925 | 2012-03-27 18:43 | 2011-05-31 | Show | GitHub Exploit DB Packet Storm |
| 252377 | 5 | 警告 | The Tor Project | - | Tor の policy_summarize 関数におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2011-1924 | 2012-03-27 18:43 | 2011-02-28 | Show | GitHub Exploit DB Packet Storm |
| 252378 | 3.3 | 注意 | ihji NetBSD |
- | pmake などの製品で使用される NetBSD の make インクルードファイルにおける任意のファイルを上書される脆弱性 |
CWE-59
リンク解釈の問題 |
CVE-2011-1920 | 2012-03-27 18:43 | 2011-05-23 | Show | GitHub Exploit DB Packet Storm |
| 252379 | 9.3 | 危険 | Foxit Software Inc | - | Foxit Reader の FreeType エンジンのType 1 フォントデコーダにおける整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2011-1908 | 2012-03-27 18:43 | 2011-06-24 | Show | GitHub Exploit DB Packet Storm |
| 252380 | 5 | 警告 | Trustwave | - | Trustwave WebDefend Enterprise におけるイベント収集テーブルを読まれる脆弱性 |
CWE-255
証明書・パスワード管理 |
CVE-2011-1906 | 2012-03-27 18:43 | 2011-05-5 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 21, 2026, 4:01 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 319311 | 6.1 |
MEDIUM
Network |
outtolunchproductions | simple_headline_rotator | The Simple Headline Rotator WordPress plugin through 1.0 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin … |
CWE-79
Cross-site Scripting |
CVE-2024-7860 | 2024-09-28 05:56 | 2024-09-12 | Show | GitHub Exploit DB Packet Storm |
| 319312 | 6.1 |
MEDIUM
Network |
michalaugustyniak | misiek_paypal | The Misiek Paypal WordPress plugin through 1.1.20090324 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin a… |
CWE-79
Cross-site Scripting |
CVE-2024-7861 | 2024-09-28 05:52 | 2024-09-12 | Show | GitHub Exploit DB Packet Storm |
| 319313 | 5.7 |
MEDIUM
Network |
phoenixcontact |
tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs2000_4g_vzw_vpn_firmware tc_mgua… |
A low privileged remote attacker can get access to CSRF tokens of higher privileged users which can be abused to mount CSRF attacks. |
CWE-212
Improper Removal of Sensitive Information Before Storage or Transfer |
CVE-2024-7698 | 2024-09-28 04:39 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
| 319314 | 8.8 |
HIGH
Network |
phoenixcontact |
tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs2000_4g_vzw_vpn_firmware tc_mgua… |
A low privileged remote attacker can read and write files as root due to improper neutralization of special elements in the variable EMAIL_RELAY_PASSWORD in mGuard devices. |
CWE-78
OS Command |
CVE-2024-43387 | 2024-09-28 04:33 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
| 319315 | 8.8 |
HIGH
Network |
phoenixcontact |
tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs2000_4g_vzw_vpn_firmware tc_mgua… |
A low privileged remote attacker can trigger the execution of arbitrary OS commands as root due to improper neutralization of special elements in the variable EMAIL_NOTIFICATION.TO in mGuard devices. |
CWE-78
OS Command |
CVE-2024-43386 | 2024-09-28 04:33 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
| 319316 | 8.8 |
HIGH
Network |
phoenixcontact |
tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs2000_4g_vzw_vpn_firmware tc_mgua… |
A low privileged remote attacker can trigger the execution of arbitrary OS commands as root due to improper neutralization of special elements in the variable PROXY_HTTP_PORT in mGuard devices. |
CWE-78
OS Command |
CVE-2024-43385 | 2024-09-28 04:33 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
| 319317 | 8.8 |
HIGH
Network |
phoenixcontact |
tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs2000_4g_vzw_vpn_firmware tc_mgua… |
A low privileged remote attacker with write permissions can reconfigure the SNMP service due to improper input validation. |
NVD-CWE-noinfo
|
CVE-2024-43388 | 2024-09-28 04:32 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
| 319318 | 7.1 |
HIGH
Local |
moxa |
mxview_one mxview_one_central_manager |
The configuration file stores credentials in cleartext. An attacker with local access rights can read or modify the configuration file, potentially resulting in the service being abused due to sensit… |
CWE-312
Cleartext Storage of Sensitive Information |
CVE-2024-6785 | 2024-09-28 03:59 | 2024-09-21 | Show | GitHub Exploit DB Packet Storm |
| 319319 | 8.8 |
HIGH
Network |
phoenixcontact |
tc_mguard_rs4000_4g_vzw_vpn_firmware tc_mguard_rs4000_4g_vpn_firmware tc_mguard_rs4000_4g_att_vpn_firmware tc_mguard_rs4000_3g_vpn_firmware tc_mguard_rs2000_4g_vzw_vpn_firmware tc_mgua… |
An low privileged remote attacker can execute OS commands with root privileges due to improper neutralization of special elements in user data. |
CWE-78
OS Command |
CVE-2024-7699 | 2024-09-28 03:59 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |
| 319320 | 7.8 |
HIGH
Local |
logitech | logi_options\+ | Improper Control of Generation of Code ('Code Injection') in Electron Fuses in Logitech Options Plus version 1.60.496306 on macOS allows attackers to execute arbitrary code via insecure Electron Fuse… |
CWE-94
Code Injection |
CVE-2024-8258 | 2024-09-28 03:56 | 2024-09-10 | Show | GitHub Exploit DB Packet Storm |