|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 23, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 216581 | 4.3 | 警告 | Kevin Renskers | - | TYPO3 用 JobControl エクステンションの pi1/class.tx_dmmjobcontrol_pi1.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2014-7200 | 2014-10-24 11:59 | 2014-09-25 | Show | GitHub Exploit DB Packet Storm |
| 216582 | 4.3 | 警告 | CFDB Plugin | - | WordPress 用 Contact Form DB プラグインにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2014-7139 | 2014-10-24 11:59 | 2014-09-25 | Show | GitHub Exploit DB Packet Storm |
| 216583 | 4.3 | 警告 | Web-Dorado | - | WordPress 用 Web-Dorado Photo Gallery プラグインにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2014-6315 | 2014-10-24 11:58 | 2014-09-10 | Show | GitHub Exploit DB Packet Storm |
| 216584 | 7.1 | 危険 | vBulletin Solutions, Inc. | - | vBulletin の includes/api/4/breadcrumbs_create.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2014-2022 | 2014-10-24 11:06 | 2014-10-13 | Show | GitHub Exploit DB Packet Storm |
| 216585 | 7.5 | 危険 | Allomani | - | Allomani Weblinks における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2014-8766 | 2014-10-24 10:02 | 2014-10-5 | Show | GitHub Exploit DB Packet Storm |
| 216586 | 4.3 | 警告 | in-portal | - | In-Portal CMS におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2014-8304 | 2014-10-23 19:30 | 2014-09-16 | Show | GitHub Exploit DB Packet Storm |
| 216587 | 5 | 警告 | SAP | - | SAP BusinessObjects Explorer の polestar_xml.jsp におけるポートスキャニング攻撃を実行される脆弱性 |
CWE-200
情報漏えい |
CVE-2014-8315 | 2014-10-23 19:27 | 2014-10-10 | Show | GitHub Exploit DB Packet Storm |
| 216588 | 4.3 | 警告 | SAP | - | SAP HANA Developer Edition におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2014-8314 | 2014-10-23 19:27 | 2014-05-13 | Show | GitHub Exploit DB Packet Storm |
| 216589 | 6 | 警告 | SAP | - | SAP HANA の Developer Workbench の ide/core/base/server/net.xsjs における任意の XSJX コードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2014-8313 | 2014-10-23 19:26 | 2014-06-10 | Show | GitHub Exploit DB Packet Storm |
| 216590 | 3.5 | 注意 | SAP | - | SAP Netweaver AS ABAP の Business Warehouse における重要な情報を取得される脆弱性 |
CWE-Other
その他 |
CVE-2014-8312 | 2014-10-23 19:26 | 2014-06-10 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 23, 2026, 4:08 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 291921 | 5.4 |
MEDIUM
Network |
orangehrm | orangehrm | Orange HRM 2.7.1 allows XSS via the vacancy name. |
CWE-79
Cross-site Scripting |
CVE-2013-1353 | 2024-11-21 10:49 | 2020-02-10 | Show | GitHub Exploit DB Packet Storm |
| 291922 | 7.5 |
HIGH
Network |
cisco | ace_application_control_engine_module_a2 | Cisco ACE A2(3.6) allows log retention DoS. |
NVD-CWE-Other
|
CVE-2013-1202 | 2024-11-21 10:49 | 2020-02-7 | Show | GitHub Exploit DB Packet Storm |
| 291923 | 5.3 |
MEDIUM
Network |
webcalendar_project | webcalendar | webcalendar before 1.2.7 shows the reason for a failed login (e.g., "no such user"). |
CWE-203
Information Exposure Through Discrepancy |
CVE-2013-1422 | 2024-11-21 10:49 | 2020-02-4 | Show | GitHub Exploit DB Packet Storm |
| 291924 | 7.5 |
HIGH
Network |
veraxsystems | network_management_system | Verax NMS prior to 2.1.0 uses an encryption key that is hardcoded in a JAR archive. |
CWE-798
Use of Hard-coded Credentials |
CVE-2013-1352 | 2024-11-21 10:49 | 2020-01-30 | Show | GitHub Exploit DB Packet Storm |
| 291925 | 5.9 |
MEDIUM
Network |
veraxsystems | network_management_system | Verax NMS prior to 2.10 allows authentication via the encrypted password without knowing the cleartext password. |
CWE-294
Authentication Bypass by Capture-replay |
CVE-2013-1351 | 2024-11-21 10:49 | 2020-01-30 | Show | GitHub Exploit DB Packet Storm |
| 291926 | 9.1 |
CRITICAL
Network |
veraxsystems | network_management_system | Verax NMS prior to 2.1.0 has multiple security bypass vulnerabilities |
CWE-863
Incorrect Authorization |
CVE-2013-1350 | 2024-11-21 10:49 | 2020-01-30 | Show | GitHub Exploit DB Packet Storm |
| 291927 | 5.3 |
MEDIUM
Network |
dlink |
dcs-3411_firmware dcs-3430_firmware dcs-5605_firmware dcs-5635_firmware dcs-1100l_firmware dcs-1130l_firmware dcs-1100_firmware dcs-1130_firmware dcs-2102_firmware dcs-2121… |
An Authentication vulnerability exists in D-LINK WCS-1100 1.02, TESCO DCS-2121 1.05_TESCO, TESCO DCS-2102 1.05_TESCO, DCS-7510 1.00, DCS-7410 1.00, DCS-6410 1.00, DCS-5635 1.01, DCS-5605 1.01, DCS-52… |
CWE-798
Use of Hard-coded Credentials |
CVE-2013-1603 | 2024-11-21 10:49 | 2020-01-29 | Show | GitHub Exploit DB Packet Storm |
| 291928 | 7.5 |
HIGH
Network |
dlink |
dcs-3411_firmware dcs-3430_firmware dcs-5605_firmware dcs-5635_firmware dcs-1100l_firmware dcs-1130l_firmware dcs-1100_firmware dcs-1130_firmware dcs-2102_firmware dcs-2121… |
An Information Disclosure vulnerability exists due to insufficient validation of authentication cookies for the RTSP session in D-Link DCS-5635 1.01, DCS-1100L 1.04, DCS-1130L 1.04, DCS-1100 1.03/1.0… |
CWE-200
Information Exposure |
CVE-2013-1602 | 2024-11-21 10:49 | 2020-01-29 | Show | GitHub Exploit DB Packet Storm |
| 291929 | 5.3 |
MEDIUM
Network |
dlink |
dcs-3411_firmware dcs-3430_firmware dcs-5605_firmware dcs-5635_firmware dcs-1100l_firmware dcs-1130l_firmware dcs-1100_firmware dcs-1130_firmware dcs-2102_firmware dcs-2121… |
An Information Disclosure vulnerability exists due to a failure to restrict access on the lums.cgi script when processing a live video stream in D-LINK An Information Disclosure vulnerability exists … |
CWE-200
Information Exposure |
CVE-2013-1601 | 2024-11-21 10:49 | 2020-01-29 | Show | GitHub Exploit DB Packet Storm |
| 291930 | 5.3 |
MEDIUM
Network |
dlink |
dcs-2102_firmware dcs-2121_firmware |
An Authentication Bypass vulnerability exists in upnp/asf-mp4.asf when streaming live video in D-Link TESCO DCS-2121 1.05_TESCO, TESCO DCS-2102 1.05_TESCO, DCS-2121 1.06_FR, 1.06, and 1.05_RU, DCS-21… |
CWE-287
Improper Authentication |
CVE-2013-1600 | 2024-11-21 10:49 | 2020-01-29 | Show | GitHub Exploit DB Packet Storm |