|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 3, 2026, 6:08 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 209221 | 7.5 | 危険 | The PHP Group アップル |
- | PHP の phar_internal.h の phar_set_inode 関数におけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2015-3329 | 2015-10-6 10:36 | 2015-04-16 | Show | GitHub Exploit DB Packet Storm |
| 209222 | 5.8 | 警告 | The PHP Group アップル |
- | PHP の ext/phar/phar.c におけるプロセスメモリから重要な情報を取得される脆弱性 |
CWE-119
バッファエラー |
CVE-2015-2783 | 2015-10-6 10:36 | 2015-04-16 | Show | GitHub Exploit DB Packet Storm |
| 209223 | 5 | 警告 | The PHP Group アップル |
- | PHP の PostgreSQL エクステンションにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-Other
その他 |
CVE-2015-1352 | 2015-10-6 10:36 | 2015-01-8 | Show | GitHub Exploit DB Packet Storm |
| 209224 | 7.5 | 危険 | The PHP Group アップル |
- | PHP の phar_object.c の phar_rename_archive 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-Other
その他 |
CVE-2015-2301 | 2015-10-6 10:36 | 2015-01-29 | Show | GitHub Exploit DB Packet Storm |
| 209225 | 7.5 | 危険 | The PHP Group アップル NiH |
- | PHP の ZIP エクステンションなどで使用される libzip の zip_dirent.c の _zip_cdir_new 関数における整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2015-2331 | 2015-10-6 10:36 | 2015-03-18 | Show | GitHub Exploit DB Packet Storm |
| 209226 | 5 | 警告 | The PHP Group アップル |
- | PHP の ext/standard/basic_functions.c の move_uploaded_file の実装における拡張子の制限を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2015-2348 | 2015-10-6 10:36 | 2015-03-18 | Show | GitHub Exploit DB Packet Storm |
| 209227 | 7.5 | 危険 | The PHP Group アップル |
- | PHP の ext/standard/var_unserializer.re の process_nested_data 関数における任意のコードを実行される脆弱性 |
CWE-Other
その他 |
CVE-2015-2787 | 2015-10-6 10:36 | 2015-02-3 | Show | GitHub Exploit DB Packet Storm |
| 209228 | 6.8 | 警告 | The PHP Group アップル |
- | PHP の ext/exif/exif.c 内の exif_process_unicode 関数における任意のコードを実行される脆弱性 |
CWE-Other
その他 |
CVE-2015-0232 | 2015-10-6 10:36 | 2015-01-22 | Show | GitHub Exploit DB Packet Storm |
| 209229 | 7.5 | 危険 | The PHP Group アップル |
- | PHP の ext/standard/var_unserializer.re の process_nested_data 関数における任意のコードを実行される脆弱性 |
CWE-Other
その他 |
CVE-2015-0231 | 2015-10-6 10:36 | 2015-01-22 | Show | GitHub Exploit DB Packet Storm |
| 209230 | 6.9 | 警告 | アップル FreeBSD |
- | FreeBSD および Apple iOS のカーネルの libc の stdio 内の fflush.c の __sflush 関数における任意のコードを実行される脆弱性 |
CWE-119
バッファエラー |
CVE-2014-8611 | 2015-10-6 10:34 | 2014-12-10 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 3, 2026, 4:18 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 297881 | - |
mozilla canonical suse opensuse |
firefox seamonkey thunderbird ubuntu_linux linux_enterprise_desktop linux_enterprise_software_development_kit opensuse linux_enterprise_server |
Use-after-free vulnerability in the BuildTextRunsScanner::BreakSink::SetBreaks function in Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 allows remote attackers to e… |
CWE-416
Use After Free |
CVE-2012-4218 | 2024-11-21 10:42 | 2012-11-21 | Show | GitHub Exploit DB Packet Storm | |
| 297882 | - |
mozilla suse opensuse canonical |
firefox seamonkey thunderbird thunderbird_esr linux_enterprise_server linux_enterprise_desktop opensuse linux_enterprise_software_development_kit ubuntu_linux |
Use-after-free vulnerability in the nsViewManager::ProcessPendingUpdates function in Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 allows remote attackers to execute… |
CWE-416
Use After Free |
CVE-2012-4217 | 2024-11-21 10:42 | 2012-11-21 | Show | GitHub Exploit DB Packet Storm | |
| 297883 | - |
mozilla suse opensuse redhat debian canonical |
firefox seamonkey thunderbird thunderbird_esr linux_enterprise_server linux_enterprise_desktop opensuse linux_enterprise_software_development_kit enterprise_linux_server en… |
Use-after-free vulnerability in the gfxFont::GetFontEntry function in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and S… |
CWE-416
Use After Free |
CVE-2012-4216 | 2024-11-21 10:42 | 2012-11-21 | Show | GitHub Exploit DB Packet Storm | |
| 297884 | - |
mozilla suse opensuse canonical |
firefox seamonkey thunderbird thunderbird_esr linux_enterprise_server linux_enterprise_desktop opensuse linux_enterprise_software_development_kit ubuntu_linux |
Use-after-free vulnerability in the nsEditor::FindNextLeafNode function in Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary… |
CWE-416
Use After Free |
CVE-2012-4213 | 2024-11-21 10:42 | 2012-11-21 | Show | GitHub Exploit DB Packet Storm | |
| 297885 | - |
mozilla canonical suse opensuse |
firefox seamonkey thunderbird ubuntu_linux linux_enterprise_desktop linux_enterprise_software_development_kit opensuse linux_enterprise_server |
Use-after-free vulnerability in the XPCWrappedNative::Mark function in Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary cod… |
CWE-416
Use After Free |
CVE-2012-4212 | 2024-11-21 10:42 | 2012-11-21 | Show | GitHub Exploit DB Packet Storm | |
| 297886 | - | mozilla | firefox | The Style Inspector in Mozilla Firefox before 17.0 and Firefox ESR 10.x before 10.0.11 does not properly restrict the context of HTML markup and Cascading Style Sheets (CSS) token sequences, which al… |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2012-4210 | 2024-11-21 10:42 | 2012-11-21 | Show | GitHub Exploit DB Packet Storm | |
| 297887 | - |
mozilla suse opensuse canonical |
firefox seamonkey thunderbird linux_enterprise_server linux_enterprise_desktop opensuse linux_enterprise_software_development_kit ubuntu_linux |
The XrayWrapper implementation in Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 does not consider the compartment during property filtering, which allows remote atta… |
CWE-200
Information Exposure |
CVE-2012-4208 | 2024-11-21 10:42 | 2012-11-21 | Show | GitHub Exploit DB Packet Storm | |
| 297888 | - |
mozilla suse opensuse canonical redhat |
firefox seamonkey thunderbird thunderbird_esr linux_enterprise_server linux_enterprise_desktop opensuse linux_enterprise_software_development_kit ubuntu_linux enterprise_li… |
Use-after-free vulnerability in the nsPlaintextEditor::FireClipboardEvent function in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x befor… |
CWE-416
Use After Free |
CVE-2012-4215 | 2024-11-21 10:42 | 2012-11-21 | Show | GitHub Exploit DB Packet Storm | |
| 297889 | - |
mozilla suse opensuse redhat canonical |
firefox seamonkey thunderbird thunderbird_esr linux_enterprise_server linux_enterprise_desktop opensuse linux_enterprise_software_development_kit enterprise_linux_server en… |
Use-after-free vulnerability in the nsTextEditorState::PrepareEditor function in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.… |
CWE-416
Use After Free |
CVE-2012-4214 | 2024-11-21 10:42 | 2012-11-21 | Show | GitHub Exploit DB Packet Storm | |
| 297890 | - |
mozilla suse opensuse redhat canonical |
firefox seamonkey thunderbird thunderbird_esr linux_enterprise_server linux_enterprise_desktop opensuse linux_enterprise_software_development_kit enterprise_linux_server en… |
Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 do not prevent use of a "top" frame name-attribut… |
CWE-79
Cross-site Scripting |
CVE-2012-4209 | 2024-11-21 10:42 | 2012-11-21 | Show | GitHub Exploit DB Packet Storm |