|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 25, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 253131 | 5 | 警告 | Joomla! | - | Joomla! における重要な情報を取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2011-2488 | 2012-03-27 18:43 | 2011-04-4 | Show | GitHub Exploit DB Packet Storm |
| 253132 | 2.6 | 注意 | The Icinga Project | - | Icinga の config.c におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-2477 | 2012-03-27 18:43 | 2011-06-14 | Show | GitHub Exploit DB Packet Storm |
| 253133 | 4.3 | 警告 | Coppermine Photo Gallery | - | CPG におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-2476 | 2012-03-27 18:43 | 2011-06-2 | Show | GitHub Exploit DB Packet Storm |
| 253134 | 10 | 危険 | サイベース | - | Sybase OneBridge Mobile Data Suite の ECTrace.dll における任意のコードを実行される脆弱性 |
CWE-134
書式文字列の問題 |
CVE-2011-2475 | 2012-03-27 18:43 | 2011-06-9 | Show | GitHub Exploit DB Packet Storm |
| 253135 | 5 | 警告 | サイベース | - | Sybase EAServer Developer Edition の HTTP Server におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2011-2474 | 2012-03-27 18:43 | 2011-06-9 | Show | GitHub Exploit DB Packet Storm |
| 253136 | 6.3 | 警告 | maynard johnson | - | OProfile の do_dump_data 関数における任意のファイルを作成または上書きされる脆弱性 |
CWE-59
リンク解釈の問題 |
CVE-2011-2473 | 2012-03-27 18:43 | 2011-06-9 | Show | GitHub Exploit DB Packet Storm |
| 253137 | 6.3 | 警告 | maynard johnson | - | OProfile の utils/opcontrol におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2011-2472 | 2012-03-27 18:43 | 2011-06-9 | Show | GitHub Exploit DB Packet Storm |
| 253138 | 7.2 | 危険 | maynard johnson | - | OProfile の utils/opcontrol における権限を取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-2471 | 2012-03-27 18:43 | 2011-06-9 | Show | GitHub Exploit DB Packet Storm |
| 253139 | 4.3 | 警告 | reallysimplechat | - | ARSC におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-2470 | 2012-03-27 18:43 | 2011-06-29 | Show | GitHub Exploit DB Packet Storm |
| 253140 | 5.8 | 警告 | likewise | - | Likewise Open および Likewise Enterprise の lsassd における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-2467 | 2012-03-27 18:43 | 2011-07-26 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 25, 2026, 4:04 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 194051 | 8.8 |
HIGH
Network |
chinamobile | an_lianbao_wf-1_firmware | The api/zrDm/set_zrDm interface in China Mobile An Lianbao WF-1 router 1.0.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the dm_enable, AppKey, or Pwd parameter. |
CWE-78
OS Command |
CVE-2021-30229 | 2024-11-21 15:03 | 2021-04-30 | Show | GitHub Exploit DB Packet Storm |
| 194052 | 9.8 |
CRITICAL
Network |
chinamobile | an_lianbao_wf-1_firmware | The api/ZRAndlink/set_ZRAndlink interface in China Mobile An Lianbao WF-1 router 1.0.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the iandlink_proc_enable param… |
CWE-78
OS Command |
CVE-2021-30228 | 2024-11-21 15:03 | 2021-04-30 | Show | GitHub Exploit DB Packet Storm |
| 194053 | 6.1 |
MEDIUM
Network |
emlog | emlog | Cross Site Scripting (XSS) vulnerability in the article comments feature in emlog 6.0. |
CWE-79
Cross-site Scripting |
CVE-2021-30227 | 2024-11-21 15:03 | 2021-04-30 | Show | GitHub Exploit DB Packet Storm |
| 194054 | 8.8 |
HIGH
Network |
rukovoditel | rukovoditel | Cross Site Request Forgery (CSRF) in Rukovoditel v2.8.3 allows attackers to create an admin user with an arbitrary credentials. |
CWE-352
Origin Validation Error |
CVE-2021-30224 | 2024-11-21 15:03 | 2021-04-30 | Show | GitHub Exploit DB Packet Storm |
| 194055 | 5.5 |
MEDIUM
Local |
samurai_project | samurai | samurai 1.2 has a NULL pointer dereference in printstatus() function in build.c via a crafted build file. |
CWE-476
NULL Pointer Dereference |
CVE-2021-30219 | 2024-11-21 15:03 | 2021-04-30 | Show | GitHub Exploit DB Packet Storm |
| 194056 | 5.5 |
MEDIUM
Local |
samurai_project | samurai | samurai 1.2 has a NULL pointer dereference in writefile() in util.c via a crafted build file. |
CWE-476
NULL Pointer Dereference |
CVE-2021-30218 | 2024-11-21 15:03 | 2021-04-30 | Show | GitHub Exploit DB Packet Storm |
| 194057 | 5.5 |
MEDIUM
Local |
md4c_project | md4c | md_analyze_line in md4c.c in md4c 0.4.7 allows attackers to trigger use of uninitialized memory, and cause a denial of service via a malformed Markdown document. |
CWE-908
Use of Uninitialized Resource |
CVE-2021-30027 | 2024-11-21 15:03 | 2021-04-30 | Show | GitHub Exploit DB Packet Storm |
| 194058 | 7.5 |
HIGH
Network |
meritlilin |
p2r8852e2_firmware p2r8852e4_firmware p2r6852e2_firmware p2r6852e4_firmware p2r6552e2_firmware p2r6552e4_firmware p2r6352ae2_firmware p2r6352ae4_firmware p2r3052ae2_firmware | The sensitive information of webcam device is not properly protected. Remote attackers can unauthentically grant user’s credential. |
CWE-522
Insufficiently Protected Credentials |
CVE-2021-30169 | 2024-11-21 15:03 | 2021-04-28 | Show | GitHub Exploit DB Packet Storm |
| 194059 | 9.8 |
CRITICAL
Network |
meritlilin |
p2r8852e2_firmware p2r8852e4_firmware p2r6852e2_firmware p2r6852e4_firmware p2r6552e2_firmware p2r6552e4_firmware p2r6352ae2_firmware p2r6352ae4_firmware p2r3052ae2_firmware | The sensitive information of webcam device is not properly protected. Remote attackers can unauthentically grant administrator’s credential and further control the devices. |
CWE-522
Insufficiently Protected Credentials |
CVE-2021-30168 | 2024-11-21 15:03 | 2021-04-28 | Show | GitHub Exploit DB Packet Storm |
| 194060 | 9.8 |
CRITICAL
Network |
meritlilin |
p2r8852e2_firmware p2r8852e4_firmware p2r6852e2_firmware p2r6852e4_firmware p2r6552e2_firmware p2r6552e4_firmware p2r6352ae2_firmware p2r6352ae4_firmware p2r3052ae2_firmware | The manage users profile services of the network camera device allows an authenticated. Remote attackers can modify URL parameters and further amend user’s information and escalate privileges to cont… |
CWE-306
Missing Authentication for Critical Function |
CVE-2021-30167 | 2024-11-21 15:03 | 2021-04-28 | Show | GitHub Exploit DB Packet Storm |