|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 3, 2026, 6:08 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 252791 | 4.3 | 警告 | ApPHP | - | ApPHP Calendar の calendar.class.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-4880 | 2012-01-19 10:33 | 2011-10-7 | Show | GitHub Exploit DB Packet Storm |
| 252792 | 7.5 | 危険 | Hinnendahl | - | Kontakt Formular の formmailer.php における任意の PHP コードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2010-4878 | 2012-01-19 10:32 | 2011-10-7 | Show | GitHub Exploit DB Packet Storm |
| 252793 | 4.3 | 警告 | InsaneVisions | - | OneCMS の index.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-4877 | 2012-01-19 10:31 | 2011-10-7 | Show | GitHub Exploit DB Packet Storm |
| 252794 | 7.5 | 危険 | got milk | - | mBlogger の viewpost.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4876 | 2012-01-19 10:30 | 2011-10-7 | Show | GitHub Exploit DB Packet Storm |
| 252795 | 4.3 | 警告 | Xondie | - | WordPress 用 Vodpod Video Gallery プラグインにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-4875 | 2012-01-19 10:30 | 2011-10-7 | Show | GitHub Exploit DB Packet Storm |
| 252796 | 4.3 | 警告 | NinkoBB | - | NinkoBB の users.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-4874 | 2012-01-19 10:28 | 2011-10-7 | Show | GitHub Exploit DB Packet Storm |
| 252797 | 4.3 | 警告 | WeBid Support | - | WeBid におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-4873 | 2012-01-19 10:27 | 2011-10-7 | Show | GitHub Exploit DB Packet Storm |
| 252798 | 7.5 | 危険 | PilotCart | - | ASPilot Pilot Cart の newsroom.asp における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4872 | 2012-01-19 10:27 | 2011-10-7 | Show | GitHub Exploit DB Packet Storm |
| 252799 | 10 | 危険 | SmartSoft | - | SmartFTP における詳細不明な脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-4871 | 2012-01-19 10:26 | 2011-10-7 | Show | GitHub Exploit DB Packet Storm |
| 252800 | 7.5 | 危険 | bloofox | - | BloofoxCMS における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4870 | 2012-01-19 10:25 | 2011-10-7 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 3, 2026, 4:18 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 195311 | 7.2 |
HIGH
Network |
contact_form_submissions_project | contact_form_submissions | Unvalidated input in the Contact Form Submissions WordPress plugin before 1.7.1, could lead to SQL injection in the wpcf7_contact_form GET parameter when submitting a filter request as a high privile… |
CWE-89
SQL Injection |
CVE-2021-24125 | 2024-11-21 14:52 | 2021-03-19 | Show | GitHub Exploit DB Packet Storm |
| 195312 | 6.1 |
MEDIUM
Network |
terryl | wp_shieldon | Unvalidated input and lack of output encoding in the WP Shieldon WordPress plugin, version 1.6.3 and below, leads to Unauthenticated Reflected Cross-Site Scripting (XSS) when the CAPTCHA page is show… |
CWE-79
Cross-site Scripting |
CVE-2021-24124 | 2024-11-21 14:52 | 2021-03-19 | Show | GitHub Exploit DB Packet Storm |
| 195313 | 7.2 |
HIGH
Network |
blubrry | powerpress | Arbitrary file upload in the PowerPress WordPress plugin, versions before 8.3.8, did not verify some of the uploaded feed images (such as the ones from Podcast Artwork section), allowing high privile… |
CWE-434
Unrestricted Upload of File with Dangerous Type |
CVE-2021-24123 | 2024-11-21 14:52 | 2021-03-19 | Show | GitHub Exploit DB Packet Storm |
| 195314 | 7.5 |
HIGH
Network |
proxygen mvfst |
A packet of death scenario is possible in mvfst via a specially crafted message during a QUIC session, which causes a crash via a failed assertion. Per QUIC specification, this particular message sho… |
CWE-617
Reachable Assertion |
CVE-2021-24029 | 2024-11-21 14:52 | 2021-03-16 | Show | GitHub Exploit DB Packet Storm | |
| 195315 | 7.8 |
HIGH
Local |
microsoft | high_efficiency_video_coding | HEVC Video Extensions Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-24110 | 2024-11-21 14:52 | 2021-03-12 | Show | GitHub Exploit DB Packet Storm |
| 195316 | 7.8 |
HIGH
Local |
microsoft |
office 365_apps |
Microsoft Office Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-24108 | 2024-11-21 14:52 | 2021-03-12 | Show | GitHub Exploit DB Packet Storm |
| 195317 | 5.5 |
MEDIUM
Local |
microsoft |
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019 |
Windows Event Tracing Information Disclosure Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-24107 | 2024-11-21 14:52 | 2021-03-12 | Show | GitHub Exploit DB Packet Storm |
| 195318 | 4.6 |
MEDIUM
Local |
microsoft |
sharepoint_foundation sharepoint_enterprise_server sharepoint_server |
Microsoft SharePoint Server Spoofing Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-24104 | 2024-11-21 14:52 | 2021-03-12 | Show | GitHub Exploit DB Packet Storm |
| 195319 | 7.0 |
HIGH
Local |
microsoft |
windows_10 windows_server_2019 windows_server_2016 |
DirectX Elevation of Privilege Vulnerability |
CWE-269
Improper Privilege Management |
CVE-2021-24095 | 2024-11-21 14:52 | 2021-03-12 | Show | GitHub Exploit DB Packet Storm |
| 195320 | 7.8 |
HIGH
Local |
microsoft |
windows_server_2016 windows_10 |
Windows Error Reporting Elevation of Privilege Vulnerability |
CWE-269
Improper Privilege Management |
CVE-2021-24090 | 2024-11-21 14:52 | 2021-03-12 | Show | GitHub Exploit DB Packet Storm |