|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 6, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 253411 | 4.3 | 警告 | VideoWhisper.com | - | VideoWhisper PHP 2 Way Video Chat コンポーネントにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-4971 | 2011-12-9 14:19 | 2011-11-2 | Show | GitHub Exploit DB Packet Storm |
| 253412 | 7.5 | 危険 | OlyKit | - | OlyKit Swoopo Clone 2010 の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4997 | 2011-12-9 14:18 | 2011-11-2 | Show | GitHub Exploit DB Packet Storm |
| 253413 | 7.5 | 危険 | Maulana Al Matien | - | ardeaCore PHP Framework におけるリモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2010-4998 | 2011-12-9 14:18 | 2011-11-2 | Show | GitHub Exploit DB Packet Storm |
| 253414 | 7.5 | 危険 | Joe Pieruccini | - | MCLogin System の login/login_index.php におけるSQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-5000 | 2011-12-9 14:17 | 2011-11-2 | Show | GitHub Exploit DB Packet Storm |
| 253415 | 7.5 | 危険 | 2daybiz | - | 2daybiz Polls Script の searchvote.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-5004 | 2011-12-9 14:16 | 2011-11-2 | Show | GitHub Exploit DB Packet Storm |
| 253416 | 4.3 | 警告 | Rayzz | - | Rayzz Photoz の members/profileCommentsResponse.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-5005 | 2011-12-9 14:15 | 2011-11-2 | Show | GitHub Exploit DB Packet Storm |
| 253417 | 7.5 | 危険 | Emophp Programming | - | EMO Realty Manager の googlemap/index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-5006 | 2011-12-9 14:15 | 2011-11-2 | Show | GitHub Exploit DB Packet Storm |
| 253418 | 4.3 | 警告 | ut-files | - | UTStats の pages/match_report.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-5007 | 2011-12-9 14:14 | 2011-11-2 | Show | GitHub Exploit DB Packet Storm |
| 253419 | 7.5 | 危険 | Denali | - | BrightSuite Groupware における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-5008 | 2011-12-9 14:13 | 2011-11-2 | Show | GitHub Exploit DB Packet Storm |
| 253420 | 7.5 | 危険 | ut-files | - | UTStats の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-5009 | 2011-12-9 14:12 | 2011-11-2 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 6, 2026, 4:18 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 225671 | 8.0 |
HIGH
Adjacent |
netgear |
xr500_firmware d3600_firmware d6000_firmware |
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, and XR500 before 2.3.2.32. |
CWE-77
Command Injection |
CVE-2019-20710 | 2024-11-21 13:39 | 2020-04-17 | Show | GitHub Exploit DB Packet Storm |
| 225672 | 8.0 |
HIGH
Adjacent |
netgear |
xr500_firmware d3600_firmware d6000_firmware |
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, and XR500 before 2.3.2.32. |
CWE-77
Command Injection |
CVE-2019-20709 | 2024-11-21 13:39 | 2020-04-17 | Show | GitHub Exploit DB Packet Storm |
| 225673 | 6.8 |
MEDIUM
Adjacent |
netgear |
d6220_firmware d6400_firmware d7000_firmware d8500_firmware r6250_firmware r6400_firmware r7000p_firmware r7100lg_firmware r7300dst_firmware r7900_firmware r7900p_firmwa… |
Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects D6220 before 1.0.0.48, D6400 before 1.0.0.82, D7000v2 before 1.0.0.52, D8500 before 1.0.3.43, R6250 be… |
CWE-120
Classic Buffer Overflow |
CVE-2019-20719 | 2024-11-21 13:39 | 2020-04-17 | Show | GitHub Exploit DB Packet Storm |
| 225674 | 6.8 |
MEDIUM
Adjacent |
netgear |
d6220_firmware d6400_firmware d7000_firmware d8500_firmware r6250_firmware r6400_firmware r7100lg_firmware r7300dst_firmware r7900_firmware r7900p_firmware r8000_firmwar… |
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D6220 before 1.0.0.48, D6400 before 1.0.0.82, D7000v2 before 1.0.0.52, D8500 before 1.0.3.43, R6250 be… |
CWE-77
Command Injection |
CVE-2019-20718 | 2024-11-21 13:39 | 2020-04-17 | Show | GitHub Exploit DB Packet Storm |
| 225675 | 6.5 |
MEDIUM
Adjacent |
netgear |
d3600_firmware d6000_firmware d7800_firmware ex2700_firmware ex6200_firmware ex8000_firmware r7500_firmware r7800_firmware rbk20_firmware rbr20_firmware rbs20_firmware | Certain NETGEAR devices are affected by denial of service. This affects D3600 before 1.0.0.75, D6000 before 1.0.0.75, D7800 before 1.0.1.44, EX2700 before 1.0.1.52, EX6200v2 before 1.0.1.74, EX8000 b… |
NVD-CWE-noinfo
|
CVE-2019-20717 | 2024-11-21 13:39 | 2020-04-17 | Show | GitHub Exploit DB Packet Storm |
| 225676 | 4.8 |
MEDIUM
Network |
netgear |
d3600_firmware d6000_firmware d7800_firmware dm200_firmware r7500_firmware r7800_firmware r8900_firmware r9000_firmware rbk20_firmware rbr20_firmware rbs20_firmware r… |
Certain NETGEAR devices are affected by stored XSS. This affects D3600 before 1.0.0.75, D6000 before 1.0.0.75, D7800 before 1.0.1.44, DM200 before 1.0.0.58, R7500v2 before 1.0.3.40, R7800 before 1.0.… |
CWE-79
Cross-site Scripting |
CVE-2019-20714 | 2024-11-21 13:39 | 2020-04-17 | Show | GitHub Exploit DB Packet Storm |
| 225677 | 6.8 |
MEDIUM
Adjacent |
netgear |
d8500_firmware r6250_firmware r6300_firmware r6400_firmware r6700_firmware r6900_firmware r6900p_firmware r7000_firmware r7000p_firmware r7100lg_firmware r7300dst_firmwa… |
Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects D8500 before 1.0.3.44, R6250 before 1.0.4.34, R6300v2 before 1.0.4.32, R6400 before 1.0.1.… |
CWE-787
Out-of-bounds Write |
CVE-2019-20713 | 2024-11-21 13:39 | 2020-04-17 | Show | GitHub Exploit DB Packet Storm |
| 225678 | 8.0 |
HIGH
Adjacent |
netgear |
xr500_firmware d3600_firmware d6000_firmware |
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, and XR500 before 2.3.2.32. |
CWE-77
Command Injection |
CVE-2019-20708 | 2024-11-21 13:39 | 2020-04-17 | Show | GitHub Exploit DB Packet Storm |
| 225679 | 8.0 |
HIGH
Adjacent |
netgear |
r7800_firmware xr500_firmware |
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects R7800 before 1.0.2.60 and XR500 before 2.3.2.32. |
CWE-77
Command Injection |
CVE-2019-20707 | 2024-11-21 13:39 | 2020-04-17 | Show | GitHub Exploit DB Packet Storm |
| 225680 | 8.0 |
HIGH
Adjacent |
netgear |
r7800_firmware xr500_firmware |
Certain NETGEAR devices are affected by command injection by an authenticated user. This affects R7800 before 1.0.2.60 and XR500 before 2.3.2.32. |
CWE-77
Command Injection |
CVE-2019-20706 | 2024-11-21 13:39 | 2020-04-17 | Show | GitHub Exploit DB Packet Storm |