|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 5, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 252561 | 4.3 | 警告 | IBM Apache Software Foundation アップル サイバートラスト株式会社 富士通 サン・マイクロシステムズ ターボリナックス ヒューレット・パッカード レッドハット |
- | Apache の mod_proxy_ftp モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-2939 | 2010-11-4 15:35 | 2008-08-6 | Show | GitHub Exploit DB Packet Storm |
| 252562 | 1.9 | 注意 | オラクル | - | Oracle Solaris および OpenSolaris における USB の処理に関する脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-3542 | 2010-11-4 15:31 | 2010-10-12 | Show | GitHub Exploit DB Packet Storm |
| 252563 | 2.4 | 注意 | オラクル | - | Oracle Solaris および OpenSolaris における Device Drivers の処理に関する脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-3513 | 2010-11-4 15:31 | 2010-10-12 | Show | GitHub Exploit DB Packet Storm |
| 252564 | 3.2 | 注意 | オラクル | - | Oracle Solaris における Solaris Zones の処理に関する脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-3508 | 2010-11-4 15:30 | 2010-10-12 | Show | GitHub Exploit DB Packet Storm |
| 252565 | 3.5 | 注意 | オラクル | - | Oracle Sun Products Suite の Oracle iPlanet Web Server コンポーネントにおける脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-3512 | 2010-11-2 15:53 | 2010-10-12 | Show | GitHub Exploit DB Packet Storm |
| 252566 | 3.6 | 注意 | オラクル | - | Oracle Solaris および OpenSolaris における SCSI enclosure services デバイスドライバの処理に関する脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-3576 | 2010-11-2 15:53 | 2010-10-12 | Show | GitHub Exploit DB Packet Storm |
| 252567 | 4 | 警告 | オラクル | - | Oracle Solaris および OpenSolaris における ZFS の処理に関する脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-3540 | 2010-11-2 15:53 | 2010-10-12 | Show | GitHub Exploit DB Packet Storm |
| 252568 | 4 | 警告 | オラクル | - | Oracle Solaris および OpenSolaris における InfiniBand の処理に関する脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-3516 | 2010-11-2 15:52 | 2010-10-12 | Show | GitHub Exploit DB Packet Storm |
| 252569 | 4 | 警告 | オラクル | - | Oracle Solaris および OpenSolaris の Solaris コンポーネントにおける脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-3515 | 2010-11-2 15:52 | 2010-10-12 | Show | GitHub Exploit DB Packet Storm |
| 252570 | 4.3 | 警告 | オラクル | - | Oracle Sun Products Suite の Oracle iPlanet Web Server コンポーネントにおける脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-3514 | 2010-11-2 15:52 | 2010-10-12 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 6, 2026, 4:08 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 222911 | 8.8 |
HIGH
Network |
ricoh |
sp_c250sf_firmware sp_c252sf_firmware sp_c250dn_firmware sp_c252dn_firmware m_c250fw_firmware m_c250fwb_firmware p_c300w_firmware p_c301w_firmware sp_330sn_firmware sp_330s… |
Ricoh SP C250DN 1.06 devices allow CSRF. |
CWE-352
Origin Validation Error |
CVE-2019-14304 | 2024-11-21 13:26 | 2020-01-11 | Show | GitHub Exploit DB Packet Storm |
| 222912 | 6.8 |
MEDIUM
Physics |
ricoh |
sp_c250sf_firmware sp_c252sf_firmware sp_c250dn_firmware sp_c252dn_firmware sp_330sn_firmware sp_330sfn_firmware sp_330dn_firmware sp_3710sf_firmware sp_3710dn_firmware sp_… |
On Ricoh SP C250DN 1.06 devices, a debug port can be used. |
NVD-CWE-noinfo
|
CVE-2019-14302 | 2024-11-21 13:26 | 2020-01-11 | Show | GitHub Exploit DB Packet Storm |
| 222913 | 7.5 |
HIGH
Network |
ricoh |
sp_c250sf_firmware sp_c252sf_firmware sp_c250dn_firmware sp_c252dn_firmware m_c250fw_firmware m_c250fwb_firmware p_c300w_firmware p_c301w_firmware sp_330sn_firmware sp_330s… |
Ricoh SP C250DN 1.06 devices have Incorrect Access Control (issue 1 of 2). |
CWE-200
Information Exposure |
CVE-2019-14301 | 2024-11-21 13:26 | 2020-01-11 | Show | GitHub Exploit DB Packet Storm |
| 222914 | 6.5 |
MEDIUM
Network |
gosa_project debian |
gosa debian_linux |
The GOsa_Filter_Settings cookie in GONICUS GOsa 2.7.5.2 is vulnerable to PHP objection injection, which allows a remote authenticated attacker to perform file deletions (in the context of the user ac… |
CWE-502
Deserialization of Untrusted Data |
CVE-2019-14466 | 2024-11-21 13:26 | 2020-01-1 | Show | GitHub Exploit DB Packet Storm |
| 222915 | 7.8 |
HIGH
Local |
intel | rapid_storage_technology | Improper permissions in the executable for Intel(R) RST before version 17.7.0.1006 may allow an authenticated user to potentially enable escalation of privilege via local access. |
CWE-276
Incorrect Default Permissions |
CVE-2019-14568 | 2024-11-21 13:26 | 2019-12-17 | Show | GitHub Exploit DB Packet Storm |
| 222916 | 6.1 |
MEDIUM
Network |
vocabularyserver | tematres | TemaTres 3.0 has reflected XSS via the replace_string or search_string parameter to the vocab/admin.php?doAdmin=bulkReplace URI. |
CWE-79
Cross-site Scripting |
CVE-2019-14344 | 2024-11-21 13:26 | 2019-12-14 | Show | GitHub Exploit DB Packet Storm |
| 222917 | 5.3 |
MEDIUM
Network |
wolfssl | wolfssl | wolfSSL and wolfCrypt 4.1.0 and earlier (formerly known as CyaSSL) generate biased DSA nonces. This allows a remote attacker to compute the long term private key from several hundred DSA signatures v… |
CWE-331
Insufficient Entropy |
CVE-2019-14317 | 2024-11-21 13:26 | 2019-12-12 | Show | GitHub Exploit DB Packet Storm |
| 222918 | 7.5 |
HIGH
Network |
temenos | t24 | An issue was discovered in T24 in TEMENOS Channels R15.01. The login page presents JavaScript functions to access a document on the server once successfully authenticated. However, an attacker can le… |
CWE-22
Path Traversal |
CVE-2019-14251 | 2024-11-21 13:26 | 2019-12-10 | Show | GitHub Exploit DB Packet Storm |
| 222919 | 5.4 |
MEDIUM
Network |
cloudera | cloudera_manager | An issue was discovered in Cloudera Manager 5.x before 5.16.2, 6.0.x before 6.0.2, and 6.1.x before 6.1.1. Malicious impala queries can result in Cross Site Scripting (XSS) when viewed within this pr… |
CWE-79
Cross-site Scripting |
CVE-2019-14449 | 2024-11-21 13:26 | 2019-11-27 | Show | GitHub Exploit DB Packet Storm |
| 222920 | 7.8 |
HIGH
Local |
infoway | social_photo_gallery | The Social Photo Gallery plugin 1.0 for WordPress allows Remote Code Execution by creating an album and attaching a malicious PHP file in the cover photo album, because the file extension is not chec… |
CWE-434
Unrestricted Upload of File with Dangerous Type |
CVE-2019-14467 | 2024-11-21 13:26 | 2019-11-19 | Show | GitHub Exploit DB Packet Storm |