|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 16, 2026, 10:01 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 258701 | 9.3 | 危険 | マイクロソフト | - | Microsoft Internet Explorer における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2010-1259 | 2010-06-30 18:53 | 2010-06-8 | Show | GitHub Exploit DB Packet Storm |
| 258702 | 9.3 | 危険 | マイクロソフト | - | Microsoft Internet Explorer における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2010-1261 | 2010-06-30 18:53 | 2010-06-8 | Show | GitHub Exploit DB Packet Storm |
| 258703 | 9.3 | 危険 | マイクロソフト | - | Microsoft Internet Explorer における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2010-1260 | 2010-06-30 18:53 | 2010-06-8 | Show | GitHub Exploit DB Packet Storm |
| 258704 | 4.3 | 警告 | マイクロソフト | - | 複数の Microsoft 製品におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-1257 | 2010-06-30 18:53 | 2010-06-8 | Show | GitHub Exploit DB Packet Storm |
| 258705 | 9.3 | 危険 | マイクロソフト | - | 複数の Microsoft 製品における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2010-1880 | 2010-06-30 18:52 | 2010-06-8 | Show | GitHub Exploit DB Packet Storm |
| 258706 | 9.3 | 危険 | マイクロソフト | - | 複数の Microsoft 製品における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2010-1879 | 2010-06-30 18:52 | 2010-06-8 | Show | GitHub Exploit DB Packet Storm |
| 258707 | 8.5 | 危険 | PostgreSQL.org サイバートラスト株式会社 レッドハット |
- | PostgreSQL における任意の Perl コードを実行される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2010-1447 | 2010-06-30 18:17 | 2010-05-14 | Show | GitHub Exploit DB Packet Storm |
| 258708 | 9.3 | 危険 | アップル | - | Apple Mac OS の ColorSync における任意のコードを実行される脆弱性 |
CWE-119
バッファエラー |
CVE-2009-1726 | 2010-06-30 18:17 | 2009-08-5 | Show | GitHub Exploit DB Packet Storm |
| 258709 | 6.9 | 警告 | アップル サイバートラスト株式会社 The Perl Foundation レッドハット |
- | Perl の rmtree 関数における任意のファイルを削除される脆弱性 |
CWE-362
競合状態 |
CVE-2008-5303 | 2010-06-30 18:16 | 2008-12-1 | Show | GitHub Exploit DB Packet Storm |
| 258710 | 6.9 | 警告 | アップル サイバートラスト株式会社 The Perl Foundation レッドハット |
- | Perl の rmtree 関数における任意の setuid バイナリを作成される脆弱性 |
CWE-362
競合状態 |
CVE-2008-5302 | 2010-06-30 18:16 | 2008-12-1 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 16, 2026, 4:13 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 197351 | 7.5 |
HIGH
Network |
android | Calling of non-existent provider in MobileWips application prior to SMR Feb-2021 Release 1 allows unauthorized actions including denial of service attack by hijacking the provider. |
NVD-CWE-noinfo
|
CVE-2021-25330 | 2024-11-21 14:54 | 2021-03-3 | Show | GitHub Exploit DB Packet Storm | |
| 197352 | 9.8 |
CRITICAL
Network |
gigaset | dx600a_firmware | The telnet administrator service running on port 650 on Gigaset DX600A v41.00-175 devices does not implement any lockout or throttling functionality. This situation (together with the weak password p… |
CWE-307 CWE-521 mproper Restriction of Excessive Authentication Attempts Weak Password Requirements |
CVE-2021-25309 | 2024-11-21 14:54 | 2021-03-2 | Show | GitHub Exploit DB Packet Storm |
| 197353 | 7.5 |
HIGH
Network |
gigaset | dx600a_firmware | A buffer overflow vulnerability in the AT command interface of Gigaset DX600A v41.00-175 devices allows remote attackers to force a device reboot by sending relatively long AT commands. |
CWE-120
Classic Buffer Overflow |
CVE-2021-25306 | 2024-11-21 14:54 | 2021-03-2 | Show | GitHub Exploit DB Packet Storm |
| 197354 | 7.0 |
HIGH
Local |
apache debian oracle |
tomcat debian_linux managed_file_transfer instantis_enterprisetrack agile_plm database siebel_ui_framework mysql_enterprise_monitor graph_server_and_client communications_c… |
The fix for CVE-2020-9484 was incomplete. When using Apache Tomcat 10.0.0-M1 to 10.0.0, 9.0.0.M1 to 9.0.41, 8.5.0 to 8.5.61 or 7.0.0. to 7.0.107 with a configuration edge case that was highly unlikel… |
NVD-CWE-noinfo
|
CVE-2021-25329 | 2024-11-21 14:54 | 2021-03-1 | Show | GitHub Exploit DB Packet Storm |
| 197355 | 7.5 |
HIGH
Network |
apache debian oracle |
tomcat debian_linux managed_file_transfer instantis_enterprisetrack agile_plm database siebel_ui_framework mysql_enterprise_monitor graph_server_and_client communications_c… |
When responding to new h2c connection requests, Apache Tomcat versions 10.0.0-M1 to 10.0.0, 9.0.0.M1 to 9.0.41 and 8.5.0 to 8.5.61 could duplicate request headers and a limited amount of request body… |
CWE-200
Information Exposure |
CVE-2021-25122 | 2024-11-21 14:54 | 2021-03-1 | Show | GitHub Exploit DB Packet Storm |
| 197356 | 4.4 |
MEDIUM
Local |
saltstack fedoraproject debian |
salt fedora debian_linux |
An issue was discovered in through SaltStack Salt before 3002.5. salt.modules.cmdmod can log credentials to the info or error log level. |
CWE-532 CWE-522 Inclusion of Sensitive Information in Log Files Insufficiently Protected Credentials |
CVE-2021-25284 | 2024-11-21 14:54 | 2021-02-27 | Show | GitHub Exploit DB Packet Storm |
| 197357 | 9.8 |
CRITICAL
Network |
saltstack fedoraproject debian |
salt fedora debian_linux |
An issue was discovered in through SaltStack Salt before 3002.5. The jinja renderer does not protect against server side template injection attacks. |
CWE-94
Code Injection |
CVE-2021-25283 | 2024-11-21 14:54 | 2021-02-27 | Show | GitHub Exploit DB Packet Storm |
| 197358 | 9.1 |
CRITICAL
Network |
saltstack fedoraproject debian |
salt fedora debian_linux |
An issue was discovered in through SaltStack Salt before 3002.5. The salt.wheel.pillar_roots.write method is vulnerable to directory traversal. |
CWE-22
Path Traversal |
CVE-2021-25282 | 2024-11-21 14:54 | 2021-02-27 | Show | GitHub Exploit DB Packet Storm |
| 197359 | 9.8 |
CRITICAL
Network |
saltstack fedoraproject debian |
salt fedora debian_linux |
An issue was discovered in through SaltStack Salt before 3002.5. salt-api does not honor eauth credentials for the wheel_async client. Thus, an attacker can remotely run any wheel modules on the mast… |
CWE-287
Improper Authentication |
CVE-2021-25281 | 2024-11-21 14:54 | 2021-02-27 | Show | GitHub Exploit DB Packet Storm |
| 197360 | 7.8 |
HIGH
Local |
microsoft |
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019 |
Windows PKU2U Elevation of Privilege Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-25195 | 2024-11-21 14:54 | 2021-02-26 | Show | GitHub Exploit DB Packet Storm |