|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 20, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 216081 | 4.3 | 警告 | Payment for Webform project | - | Drupal 用 Payment for Webform モジュールにおける他の匿名ユーザの決済を使用される脆弱性 |
CWE-20 CWE-287 |
CVE-2013-4594 | 2014-10-29 17:20 | 2013-11-5 | Show | GitHub Exploit DB Packet Storm |
| 216082 | 3.7 | 注意 | Artifex Software レッドハット |
- | Ghostscript における任意の PostScript のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2010-4820 | 2014-10-29 16:57 | 2010-05-26 | Show | GitHub Exploit DB Packet Storm |
| 216083 | 6.9 | 警告 | ESET | - | ESET Smart Security および ESET Endpoint Security における権限を取得される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2014-4973 | 2014-10-29 16:40 | 2014-06-27 | Show | GitHub Exploit DB Packet Storm |
| 216084 | 4.3 | 警告 | Exponent CMS project | - | Exponent CMS におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2014-6635 | 2014-10-29 15:45 | 2014-09-20 | Show | GitHub Exploit DB Packet Storm |
| 216085 | 7.5 | 危険 | XRMS CRM Project | - | XRMS CRM における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2014-5520 | 2014-10-29 15:41 | 2014-08-27 | Show | GitHub Exploit DB Packet Storm |
| 216086 | 7.5 | 危険 | F5 Networks | - | F5 BIG-IP Analytics における脆弱性 |
CWE-310
暗号の問題 |
CVE-2013-7408 | 2014-10-29 15:40 | 2013-04-9 | Show | GitHub Exploit DB Packet Storm |
| 216087 | 5 | 警告 | DeepRoot Linux | - | DeepOfix の SMTP サーバにおける認証を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2013-6796 | 2014-10-29 15:39 | 2013-11-6 | Show | GitHub Exploit DB Packet Storm |
| 216088 | 7.5 | 危険 | Zoho Corporation | - | ZOHO ManageEngine EventLog Analyzer の agentUpload サーブレットにおけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2014-6037 | 2014-10-29 15:39 | 2014-08-31 | Show | GitHub Exploit DB Packet Storm |
| 216089 | 4.4 | 警告 | Vinay Sajip | - | python-gnupg の shell_quote 関数における脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2014-1929 | 2014-10-29 15:28 | 2014-06-4 | Show | GitHub Exploit DB Packet Storm |
| 216090 | 4.6 | 警告 | Vinay Sajip | - | python-gnupg の shell_quote 関数における任意のコードを実行される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2014-1928 | 2014-10-29 15:28 | 2014-02-5 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 21, 2026, 4:10 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 295121 | - |
mozilla redhat canonical suse |
firefox thunderbird_esr thunderbird seamonkey enterprise_linux_server enterprise_linux_workstation ubuntu_linux enterprise_linux_desktop enterprise_linux_eus linux_enterpri… |
Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 do not properly manage history data, which allows r… |
CWE-79
Cross-site Scripting |
CVE-2012-3992 | 2024-11-21 10:41 | 2012-10-11 | Show | GitHub Exploit DB Packet Storm | |
| 295122 | - |
mozilla redhat canonical suse |
firefox thunderbird_esr thunderbird seamonkey enterprise_linux_server enterprise_linux_workstation ubuntu_linux enterprise_linux_desktop enterprise_linux_eus linux_enterpri… |
Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 do not properly restrict JSAPI access to the GetPro… |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2012-3991 | 2024-11-21 10:41 | 2012-10-11 | Show | GitHub Exploit DB Packet Storm | |
| 295123 | - |
mozilla canonical suse |
firefox thunderbird seamonkey ubuntu_linux linux_enterprise_desktop linux_enterprise_server |
Mozilla Firefox before 16.0, Thunderbird before 16.0, and SeaMonkey before 2.13 do not properly perform a cast of an unspecified variable during use of the instanceof operator on a JavaScript object,… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2012-3989 | 2024-11-21 10:41 | 2012-10-11 | Show | GitHub Exploit DB Packet Storm | |
| 295124 | - | mozilla | firefox | Mozilla Firefox before 16.0 on Android assigns chrome privileges to Reader Mode pages, which allows user-assisted remote attackers to bypass intended access restrictions via a crafted web site. |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2012-3987 | 2024-11-21 10:41 | 2012-10-11 | Show | GitHub Exploit DB Packet Storm | |
| 295125 | - |
mozilla canonical suse |
firefox thunderbird seamonkey ubuntu_linux linux_enterprise_desktop linux_enterprise_server |
Mozilla Firefox before 16.0, Thunderbird before 16.0, and SeaMonkey before 2.13 do not properly implement the HTML5 Same Origin Policy, which allows remote attackers to conduct cross-site scripting (… |
CWE-79
Cross-site Scripting |
CVE-2012-3985 | 2024-11-21 10:41 | 2012-10-11 | Show | GitHub Exploit DB Packet Storm | |
| 295126 | - |
mozilla canonical suse |
firefox thunderbird seamonkey ubuntu_linux linux_enterprise_desktop linux_enterprise_server |
Mozilla Firefox before 16.0, Thunderbird before 16.0, and SeaMonkey before 2.13 do not properly handle navigation away from a web page that has a SELECT element's menu active, which allows remote att… |
NVD-CWE-Other
|
CVE-2012-3984 | 2024-11-21 10:41 | 2012-10-11 | Show | GitHub Exploit DB Packet Storm | |
| 295127 | - |
mozilla redhat canonical suse debian |
firefox thunderbird_esr thunderbird seamonkey enterprise_linux_server enterprise_linux_workstation ubuntu_linux enterprise_linux_desktop enterprise_linux_eus linux_enterpri… |
Use-after-free vulnerability in the IME State Manager implementation in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and S… |
CWE-416
Use After Free |
CVE-2012-3990 | 2024-11-21 10:41 | 2012-10-11 | Show | GitHub Exploit DB Packet Storm | |
| 295128 | - |
mozilla redhat canonical suse |
firefox thunderbird_esr thunderbird seamonkey enterprise_linux_server enterprise_linux_workstation ubuntu_linux enterprise_linux_desktop enterprise_linux_eus linux_enterpri… |
Use-after-free vulnerability in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 might allow user-as… |
CWE-416
Use After Free |
CVE-2012-3988 | 2024-11-21 10:41 | 2012-10-11 | Show | GitHub Exploit DB Packet Storm | |
| 295129 | - |
mozilla redhat canonical suse debian |
firefox thunderbird_esr thunderbird seamonkey enterprise_linux_server enterprise_linux_workstation ubuntu_linux enterprise_linux_desktop enterprise_linux_eus linux_enterpri… |
Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 do not properly restrict calls to DOMWindowUtils (a… |
CWE-20
Improper Input Validation |
CVE-2012-3986 | 2024-11-21 10:41 | 2012-10-11 | Show | GitHub Exploit DB Packet Storm | |
| 295130 | - |
mozilla canonical suse |
firefox thunderbird seamonkey ubuntu_linux linux_enterprise_desktop linux_enterprise_server |
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 16.0, Thunderbird before 16.0, and SeaMonkey before 2.13 allow remote attackers to cause a denial of service (memo… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2012-3983 | 2024-11-21 10:41 | 2012-10-11 | Show | GitHub Exploit DB Packet Storm |