|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 4, 2026, 2 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 202891 | 6.1 |
警告
Network |
Huawei | - | Huawei WS331a ルータのソフトウェアにおけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2016-6158 | 2016-09-26 17:53 | 2016-09-7 | Show | GitHub Exploit DB Packet Storm |
| 202892 | 6.7 |
警告
Local |
Xen プロジェクト | - | Xen の FIFO イベントチャネルコードにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-Other
その他 |
CVE-2016-7154 | 2016-09-26 17:31 | 2016-09-8 | Show | GitHub Exploit DB Packet Storm |
| 202893 | 4.1 |
警告
Local |
Xen プロジェクト | - | Xen におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2016-7094 | 2016-09-26 17:31 | 2016-09-8 | Show | GitHub Exploit DB Packet Storm |
| 202894 | 8.2 |
重要
Local |
Xen プロジェクト | - | Xen におけるハイパーバイザのメモリを上書きされる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2016-7093 | 2016-09-26 17:31 | 2016-09-8 | Show | GitHub Exploit DB Packet Storm |
| 202895 | 8.2 |
重要
Local |
Xen プロジェクト | - | Xen の arch/x86/mm.c の get_page_from_l3e 関数におけるホスト OS の権限を取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2016-7092 | 2016-09-26 17:31 | 2016-09-8 | Show | GitHub Exploit DB Packet Storm |
| 202896 | 8.4 |
重要
Local |
レッドハット | - | Red Hat QuickStart Cloud Installer のキックスタートファイルにおける平文パスワードを特定される脆弱性 |
CWE-Other
その他 |
CVE-2016-6340 | 2016-09-26 17:14 | 2016-08-25 | Show | GitHub Exploit DB Packet Storm |
| 202897 | 8.4 |
重要
Local |
レッドハット | - | Red Hat QuickStart Cloud Installer におけるデプロイされたシステムの root パスワードを取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2016-6322 | 2016-09-26 17:14 | 2016-08-11 | Show | GitHub Exploit DB Packet Storm |
| 202898 | 7.5 |
重要
Network |
Pivotal Software, Inc. | - | Pivotal Cloud Foundry Elastic Runtime などの製品で使用される PHP Buildpack における重要な情報を取得される脆弱性 |
CWE-Other
その他 |
CVE-2016-6639 | 2016-09-26 15:54 | 2016-09-7 | Show | GitHub Exploit DB Packet Storm |
| 202899 | 9.8 |
緊急
Network |
Pivotal Software, Inc. | - | Pivotal Cloud Foundry Ops Manager における SSH アクセス権を取得される脆弱性 |
CWE-362
競合状態 |
CVE-2016-0930 | 2016-09-26 15:54 | 2016-09-12 | Show | GitHub Exploit DB Packet Storm |
| 202900 | 7.5 |
重要
Network |
Pivotal Software, Inc. | - | Pivotal Cloud Foundry 用 RabbitMQ のメトリックコレクションコンポーネントにおける重要な情報を取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2016-0929 | 2016-09-26 15:54 | 2016-07-15 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 4, 2026, 4:17 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 291971 | 6.5 |
MEDIUM
Network |
micasaverde | veralite_firmware | Directory traversal vulnerability in cgi-bin/cmh/get_file.sh in MiCasaVerde VeraLite with firmware 1.5.408 allows remote authenticated users to read arbirary files via a .. (dot dot) in the filename … |
CWE-22
Path Traversal |
CVE-2013-4861 | 2024-11-21 10:56 | 2020-01-29 | Show | GitHub Exploit DB Packet Storm |
| 291972 | 6.1 |
MEDIUM
Network |
eucalyptus | eucalyptus_management_console | Cross-site scripting (XSS) vulnerability in Eucalyptus Management Console (EMC) 4.0.x before 4.0.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. |
CWE-79
Cross-site Scripting |
CVE-2013-4770 | 2024-11-21 10:56 | 2020-01-28 | Show | GitHub Exploit DB Packet Storm |
| 291973 | 6.1 |
MEDIUM
Network |
sensiolabs fedoraproject |
symfony fedora |
Symfony 2.0.X before 2.0.24, 2.1.X before 2.1.12, 2.2.X before 2.2.5, and 2.3.X before 2.3.3 have an issue in the HttpFoundation component. The Host header can be manipulated by an attacker when the … |
CWE-79
Cross-site Scripting |
CVE-2013-4752 | 2024-11-21 10:56 | 2020-01-3 | Show | GitHub Exploit DB Packet Storm |
| 291974 | 9.8 |
CRITICAL
Network |
o-dyn | collabtive | Collabtive 1.0 has incorrect access control |
CWE-269
Improper Privilege Management |
CVE-2013-5027 | 2024-11-21 10:56 | 2019-12-28 | Show | GitHub Exploit DB Packet Storm |
| 291975 | 7.5 |
HIGH
Network |
vivotek |
ip7160_firmware ip7361_firmware ip8332_firmware |
Multiple Vivotek IP Cameras remote authentication bypass that could allow access to the video stream |
CWE-863
Incorrect Authorization |
CVE-2013-4985 | 2024-11-21 10:56 | 2019-12-28 | Show | GitHub Exploit DB Packet Storm |
| 291976 | 9.8 |
CRITICAL
Network |
avtech | avn801_dvr_firmware | AVTECH AVN801 DVR has a security bypass via the administration login captcha |
CWE-287
Improper Authentication |
CVE-2013-4982 | 2024-11-21 10:56 | 2019-12-28 | Show | GitHub Exploit DB Packet Storm |
| 291977 | 9.8 |
CRITICAL
Network |
hikvision | ds-2cd7153-e_firmware | Hikvision DS-2CD7153-E IP Camera has security bypass via hardcoded credentials |
CWE-287
Improper Authentication |
CVE-2013-4976 | 2024-11-21 10:56 | 2019-12-28 | Show | GitHub Exploit DB Packet Storm |
| 291978 | 8.8 |
HIGH
Network |
hikvision | ds-2cd7153-e_firmware | Hikvision DS-2CD7153-E IP Camera has Privilege Escalation |
CWE-269
Improper Privilege Management |
CVE-2013-4975 | 2024-11-21 10:56 | 2019-12-28 | Show | GitHub Exploit DB Packet Storm |
| 291979 | 5.3 |
MEDIUM
Network |
karotz | api | Karotz API 12.07.19.00: Session Token Information Disclosure |
CWE-200
Information Exposure |
CVE-2013-4868 | 2024-11-21 10:56 | 2019-12-28 | Show | GitHub Exploit DB Packet Storm |
| 291980 | 6.3 |
MEDIUM
Physics |
ea | karotz_smart_rabbit_firmware | Electronic Arts Karotz Smart Rabbit 12.07.19.00 allows Python module hijacking |
CWE-269
Improper Privilege Management |
CVE-2013-4867 | 2024-11-21 10:56 | 2019-12-28 | Show | GitHub Exploit DB Packet Storm |