|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 27, 2026, 10 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 252501 | 6.5 | 警告 | Dolibarr ERP & CRM | - | Dolibarr における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-4802 | 2011-12-16 10:50 | 2011-11-3 | Show | GitHub Exploit DB Packet Storm |
| 252502 | 4.3 | 警告 | Jextensions | - | Joomla! 用 HM Community コンポーネントにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-4809 | 2011-12-16 10:44 | 2011-12-14 | Show | GitHub Exploit DB Packet Storm |
| 252503 | 7.5 | 危険 | Jextensions | - | Joomla! 用 HM Community コンポーネントにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-4808 | 2011-12-16 10:41 | 2011-12-14 | Show | GitHub Exploit DB Packet Storm |
| 252504 | 5 | 警告 | foobla | - | Joomla! 用の obSuggest コンポーネントにおけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2011-4804 | 2011-12-16 10:19 | 2011-12-14 | Show | GitHub Exploit DB Packet Storm |
| 252505 | 7.5 | 危険 | BraveNewCode | - | WordPress 用の WPTouch プラグインにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-4803 | 2011-12-16 10:18 | 2011-12-14 | Show | GitHub Exploit DB Packet Storm |
| 252506 | 6.8 | 警告 | DELL EMC (旧 EMC Corporation) | - | EMC RSA AAOP におけるアプリケーション制限を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-2742 | 2011-12-15 16:59 | 2011-12-14 | Show | GitHub Exploit DB Packet Storm |
| 252507 | 6.8 | 警告 | DELL EMC (旧 EMC Corporation) | - | EMC RSA AAOP におけるセキュリティ制限を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-2741 | 2011-12-15 16:58 | 2011-12-14 | Show | GitHub Exploit DB Packet Storm |
| 252508 | 4.3 | 警告 | アドビシステムズ | - | Adobe ColdFusion の RDS におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-4368 | 2011-12-15 16:57 | 2011-12-13 | Show | GitHub Exploit DB Packet Storm |
| 252509 | 4.3 | 警告 | アドビシステムズ | - | Adobe ColdFusion におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-2463 | 2011-12-15 16:57 | 2011-12-13 | Show | GitHub Exploit DB Packet Storm |
| 252510 | 4.3 | 警告 | アップル | - | iOS 上の Safari におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-noinfo
情報不足 |
- | 2011-12-15 12:02 | 2011-12-15 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 27, 2026, 4:52 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 195581 | 6.1 |
MEDIUM
Network |
ibm netapp |
cognos_analytics oncommand_insight |
IBM Cognos Analytics 11.1.7 and 11.2.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality… |
CWE-79
Cross-site Scripting |
CVE-2021-20493 | 2024-11-21 14:46 | 2021-12-4 | Show | GitHub Exploit DB Packet Storm |
| 195582 | 7.5 |
HIGH
Network |
ibm netapp |
cognos_analytics oncommand_insight |
IBM Cognos Analytics 11.1.7 and 11.2.0 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts. IBM X-Force ID: 196339. |
CWE-521
Weak Password Requirements |
CVE-2021-20470 | 2024-11-21 14:46 | 2021-12-4 | Show | GitHub Exploit DB Packet Storm |
| 195583 | 7.5 |
HIGH
Network |
ibm | qradar_security_information_and_event_manager | IBM QRadar SIEM 7.3 and 7.4 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 196074. |
CWE-326
Inadequate Encryption Strength |
CVE-2021-20400 | 2024-11-21 14:46 | 2021-12-2 | Show | GitHub Exploit DB Packet Storm |
| 195584 | 7.5 |
HIGH
Network |
mitsubishi |
melsec_iq-r_r00_cpu_firmware melsec_iq-r_r01_cpu_firmware melsec_iq-r_r02_cpu_firmware melsec_iq-r_r04_cpu_firmware melsec_iq-r_r08_cpu_firmware melsec_iq-r_r120_cpu_firmware melsec… |
Improper Input Validation vulnerability in Mitsubishi Electric MELSEC iQ-R Series R00/01/02CPU, MELSEC iQ-R Series R04/08/16/32/120(EN)CPU, MELSEC iQ-R Series R08/16/32/120SFCPU, MELSEC iQ-R Series R… |
CWE-20
Improper Input Validation |
CVE-2021-20611 | 2024-11-21 14:46 | 2021-12-2 | Show | GitHub Exploit DB Packet Storm |
| 195585 | 7.5 |
HIGH
Network |
mitsubishi |
melsec_iq-r_r00_cpu_firmware melsec_iq-r_r01_cpu_firmware melsec_iq-r_r02_cpu_firmware melsec_iq-r_r04_cpu_firmware melsec_iq-r_r08_cpu_firmware melsec_iq-r_r120_cpu_firmware melsec… |
Improper Handling of Length Parameter Inconsistency vulnerability in Mitsubishi Electric MELSEC iQ-R Series R00/01/02CPU, MELSEC iQ-R Series R04/08/16/32/120(EN)CPU, MELSEC iQ-R Series R08/16/32/120S… |
NVD-CWE-Other
|
CVE-2021-20610 | 2024-11-21 14:46 | 2021-12-2 | Show | GitHub Exploit DB Packet Storm |
| 195586 | 7.5 |
HIGH
Network |
mitsubishi |
melsec_iq-r_r00_cpu_firmware melsec_iq-r_r01_cpu_firmware melsec_iq-r_r02_cpu_firmware melsec_iq-r_r04_cpu_firmware melsec_iq-r_r08_cpu_firmware melsec_iq-r_r120_cpu_firmware melsec… |
Uncontrolled Resource Consumption vulnerability in Mitsubishi Electric MELSEC iQ-R Series R00/01/02CPU, MELSEC iQ-R Series R04/08/16/32/120(EN)CPU, MELSEC iQ-R Series R08/16/32/120SFCPU, MELSEC iQ-R … |
CWE-400
Uncontrolled Resource Consumption |
CVE-2021-20609 | 2024-11-21 14:46 | 2021-12-2 | Show | GitHub Exploit DB Packet Storm |
| 195587 | 7.5 |
HIGH
Network |
mitsubishielectric |
gt_softgot2000 got_simple_gs2110-wtbd_firmware got_simple_gs2107-wtbd_firmware got2000_gt2104-rtbd_firmware got2000_gt2103-pmbd_firmware got2000_gt2103-pmbds_firmware got2000_gt2103… |
Improper input validation vulnerability in GOT2000 series GT27 model all versions, GOT2000 series GT25 model all versions, GOT2000 series GT23 model all versions, GOT2000 series GT21 model all versio… |
CWE-20
Improper Input Validation |
CVE-2021-20601 | 2024-11-21 14:46 | 2021-11-24 | Show | GitHub Exploit DB Packet Storm |
| 195588 | 5.3 |
MEDIUM
Network |
ibm | planning_analytics | IBM Planning Analytics 2.0 could allow a remote attacker to obtain sensitive information, caused by the failure to set the HTTPOnly flag. A remote attacker could exploit this vulnerability to obtain … |
CWE-732
Incorrect Permission Assignment for Critical Resource |
CVE-2021-20526 | 2024-11-21 14:46 | 2021-10-28 | Show | GitHub Exploit DB Packet Storm |
| 195589 | 7.5 |
HIGH
Network |
mitsubishielectric |
r08sfcpu_firmware r16sfcpu_firmware r32sfcpu_firmware r120sfcpu_firmware r08psfcpu_firmware r16psfcpu_firmware r32psfcpu_firmware r120psfcpu_firmware |
Cleartext Transmission of Sensitive InformationCleartext transmission of sensitive information vulnerability in MELSEC iQ-R series Safety CPU R08/16/32/120SFCPU firmware versions "26" and prior and M… | - | CVE-2021-20599 | 2024-11-21 14:46 | 2021-10-15 | Show | GitHub Exploit DB Packet Storm |
| 195590 | 5.9 |
MEDIUM
Network |
mitsubishielectric | r12ccpu-v_firmware | Uncontrolled resource consumption in Mitsubishi Electric MELSEC iQ-R series C Controller Module R12CCPU-V Firmware Versions "16" and prior allows a remote unauthenticated attacker to cause a denial-o… |
CWE-400
Uncontrolled Resource Consumption |
CVE-2021-20600 | 2024-11-21 14:46 | 2021-10-9 | Show | GitHub Exploit DB Packet Storm |