|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 7, 2026, 4 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 201231 | 5.3 |
警告
Network |
The phpMyAdmin Project | - | phpMyAdmin におけるログアウトのタイムアウトを回避される脆弱性 |
CWE-254
セキュリティ機能 |
CVE-2016-9851 | 2016-12-15 14:56 | 2016-11-25 | Show | GitHub Exploit DB Packet Storm |
| 201232 | 5.3 |
警告
Network |
The phpMyAdmin Project | - | phpMyAdmin におけるルール内のユーザ名が検出される脆弱性 |
CWE-254
セキュリティ機能 |
CVE-2016-9850 | 2016-12-15 14:56 | 2016-11-25 | Show | GitHub Exploit DB Packet Storm |
| 201233 | 9.8 |
緊急
Network |
The phpMyAdmin Project | - | phpMyAdmin における AllowRoot の制限を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2016-9849 | 2016-12-15 14:56 | 2016-11-25 | Show | GitHub Exploit DB Packet Storm |
| 201234 | 5.3 |
警告
Network |
The phpMyAdmin Project | - | phpMyAdmin の phpinfo における HttpOnly Cookie の値を含む PHP 情報を表示される脆弱性 |
CWE-200
情報漏えい |
CVE-2016-9848 | 2016-12-15 14:56 | 2016-11-25 | Show | GitHub Exploit DB Packet Storm |
| 201235 | 5.3 |
警告
Network |
The phpMyAdmin Project | - | phpMyAdmin におけるユーザの blowfish_secret を特定される脆弱性 |
CWE-310
暗号の問題 |
CVE-2016-9847 | 2016-12-15 14:56 | 2016-11-25 | Show | GitHub Exploit DB Packet Storm |
| 201236 | 8.1 |
重要
Network |
The phpMyAdmin Project | - | phpMyAdmin における任意のコードを実行される脆弱性 |
CWE-noinfo
情報不足 |
CVE-2016-6633 | 2016-12-15 14:56 | 2016-07-25 | Show | GitHub Exploit DB Packet Storm |
| 201237 | 5.3 |
警告
Network |
The phpMyAdmin Project | - | phpMyAdmin の url.php ファイルにおけるホストの位置を特定される脆弱性 |
CWE-200
情報漏えい |
CVE-2016-6627 | 2016-12-15 14:56 | 2016-07-24 | Show | GitHub Exploit DB Packet Storm |
| 201238 | 4.3 |
警告
Network |
The phpMyAdmin Project | - | phpMyAdmin におけるログインユーザを特定される脆弱性 |
CWE-200
情報漏えい |
CVE-2016-6625 | 2016-12-15 14:56 | 2016-07-24 | Show | GitHub Exploit DB Packet Storm |
| 201239 | 8.1 |
重要
Network |
The phpMyAdmin Project | - | phpMyAdmin のエクスポート機能における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2016-6617 | 2016-12-15 14:56 | 2016-07-14 | Show | GitHub Exploit DB Packet Storm |
| 201240 | 6.5 |
警告
Network |
The phpMyAdmin Project | - | phpMyAdmin の LOAD LOCAL INFILE 機能におけるサーバ上のファイルをデータベースシステムに公開される脆弱性 |
CWE-200
情報漏えい |
CVE-2016-6612 | 2016-12-15 14:56 | 2016-07-12 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 7, 2026, 4:13 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 291181 | 9.8 |
CRITICAL
Network |
dlink | dir-100_firmware | D-Link DIR-100 4.03B07 has PPTP and poe information disclosure |
CWE-522
Insufficiently Protected Credentials |
CVE-2013-7055 | 2024-11-21 11:00 | 2020-02-4 | Show | GitHub Exploit DB Packet Storm |
| 291182 | 6.1 |
MEDIUM
Network |
dlink | dir-100_firmware | D-Link DIR-100 4.03B07: cli.cgi XSS |
CWE-79
Cross-site Scripting |
CVE-2013-7054 | 2024-11-21 11:00 | 2020-02-4 | Show | GitHub Exploit DB Packet Storm |
| 291183 | 8.8 |
HIGH
Network |
dlink | dir-100_firmware | D-Link DIR-100 4.03B07: cli.cgi CSRF |
CWE-352
Origin Validation Error |
CVE-2013-7053 | 2024-11-21 11:00 | 2020-02-4 | Show | GitHub Exploit DB Packet Storm |
| 291184 | 9.8 |
CRITICAL
Network |
dlink | dir-100_firmware | D-Link DIR-100 4.03B07: security bypass via an error in the cliget.cgi script |
CWE-522
Insufficiently Protected Credentials |
CVE-2013-7052 | 2024-11-21 11:00 | 2020-02-4 | Show | GitHub Exploit DB Packet Storm |
| 291185 | 8.8 |
HIGH
Network |
dlink | dir-100_firmware | D-Link DIR-100 4.03B07: cli.cgi security bypass due to failure to check authentication parameters |
CWE-287
Improper Authentication |
CVE-2013-7051 | 2024-11-21 11:00 | 2020-02-4 | Show | GitHub Exploit DB Packet Storm |
| 291186 | 9.8 |
CRITICAL
Network |
zohocorp | manageengine_desktop_central | Unrestricted file upload vulnerability in AgentLogUploadServlet in ManageEngine DesktopCentral 7.x and 8.0.0 before build 80293 allows remote attackers to execute arbitrary code by uploading a file w… |
CWE-434
Unrestricted Upload of File with Dangerous Type |
CVE-2013-7390 | 2024-11-21 11:00 | 2020-01-28 | Show | GitHub Exploit DB Packet Storm |
| 291187 | 7.8 |
HIGH
Local |
daum | potplayer | PotPlayer 1.5.40688: .avi File Memory Corruption |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2013-7185 | 2024-11-21 11:00 | 2020-01-15 | Show | GitHub Exploit DB Packet Storm |
| 291188 | 9.8 |
CRITICAL
Network |
ep_imageconvert_project | ep_imageconvert | The Etherpad Lite ep_imageconvert Plugin has a Remote Command Injection Vulnerability |
CWE-74
Injection |
CVE-2013-7380 | 2024-11-21 11:00 | 2020-01-10 | Show | GitHub Exploit DB Packet Storm |
| 291189 | 6.1 |
MEDIUM
Network |
shaarli_project | shaarli | Multiple cross-site scripting (XSS) vulnerabilities in index.php in Shaarli allow remote attackers to inject arbitrary web script or HTML via the URL to the (1) showRSS, (2) showATOM, or (3) showDail… |
CWE-79
Cross-site Scripting |
CVE-2013-7351 | 2024-11-21 11:00 | 2020-01-3 | Show | GitHub Exploit DB Packet Storm |
| 291190 | 6.1 |
MEDIUM
Network |
plone | plone | Multiple cross-site scripting (XSS) vulnerabilities in Zope, as used in Plone 3.3.x through 3.3.6, 4.0.x through 4.0.9, 4.1.x through 4.1.6, 4.2.x through 4.2.7, and 4.3 through 4.3.2, allow remote a… |
CWE-79
Cross-site Scripting |
CVE-2013-7062 | 2024-11-21 11:00 | 2020-01-3 | Show | GitHub Exploit DB Packet Storm |