|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 13, 2026, 12:06 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 217671 | 6.8 | 警告 | Tips and Tricks HQ | - | WordPress 用 WordPress Simple Paypal Shopping Cart プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2013-2705 | 2014-05-16 12:11 | 2013-06-5 | Show | GitHub Exploit DB Packet Storm |
| 217672 | 4.3 | 警告 | NetWebLogic | - | WordPress 用 Events Manager プラグインおよび Events Manager Pro プラグインにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2013-1407 | 2014-05-16 12:10 | 2013-01-22 | Show | GitHub Exploit DB Packet Storm |
| 217673 | 7.5 | 危険 | Drupalauth Project | - | simpleSAMLphp 用 drupalauth モジュールの lib/Auth/Source/External.php における任意のユーザとして認証される脆弱性 |
CWE-287
不適切な認証 |
CVE-2013-4552 | 2014-05-16 11:16 | 2013-11-4 | Show | GitHub Exploit DB Packet Storm |
| 217674 | 2.6 | 注意 | Dan Wilga | - | Monster Menus モジュールにおける任意のノードコメントを読まれる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2013-4504 | 2014-05-16 11:05 | 2013-10-29 | Show | GitHub Exploit DB Packet Storm |
| 217675 | 2.1 | 注意 | Alex Barth | - | Drupal 用 Feed Element Mapper モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2013-4503 | 2014-05-16 11:03 | 2013-10-30 | Show | GitHub Exploit DB Packet Storm |
| 217676 | 4 | 警告 | Nathan Haug | - | Drupal 用 FileField Sources モジュールにおける任意のファイルを読まれる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2013-4502 | 2014-05-16 11:03 | 2013-10-30 | Show | GitHub Exploit DB Packet Storm |
| 217677 | 5 | 警告 | Quiz Module Project | - | Drupal 用 Quiz モジュールのデフォルトの View における重要なクイズ結果を取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2013-4501 | 2014-05-16 11:02 | 2013-10-30 | Show | GitHub Exploit DB Packet Storm |
| 217678 | 4.9 | 警告 | Quiz Module Project | - | Drupal 用 Quiz モジュールにおける任意のクイズ結果を削除される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2013-4500 | 2014-05-16 11:02 | 2013-10-30 | Show | GitHub Exploit DB Packet Storm |
| 217679 | 6.8 | 警告 | madeofcode | - | omniauth-facebook gem におけるクロスサイトリクエストフォージェリ攻撃を実行される脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2013-4562 | 2014-05-16 10:14 | 2013-11-12 | Show | GitHub Exploit DB Packet Storm |
| 217680 | 6.8 | 警告 | Atlassian | - | Atlassian Confluence の logout.action におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2012-6342 | 2014-05-15 17:17 | 2012-09-19 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 13, 2026, 5:05 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 291671 | - | w-cms | w-cms | Directory traversal vulnerability in the getContent function in codes/wcms.php in w-CMS 2.01 allows remote attackers to read arbitrary files via a .. (dot dot) in the p parameter. NOTE: some of thes… |
CWE-22
Path Traversal |
CVE-2012-6522 | 2024-11-21 10:46 | 2013-01-31 | Show | GitHub Exploit DB Packet Storm | |
| 291672 | - | foxitsoftware | foxit_advanced_pdf_editor | Stack-based buffer overflow in Foxit Advanced PDF Editor 3 before 3.04 might allow remote attackers to execute arbitrary code via a crafted document containing instructions that reconstruct a certain… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2013-0107 | 2024-11-21 10:46 | 2013-01-27 | Show | GitHub Exploit DB Packet Storm | |
| 291673 | - | rockwellautomation |
ethernet\/ip_firmware compactlogix_firmware flexlogix_firmware flex_i\/o_ethernet\/ip__firmware micrologix_firmware softlogix_controllers_firmware compactlogix_controllers_firmware<… |
Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E controllers; 1788-ENBT FLEXLogix adapter; 1794-AENTR FLEX I/… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2012-6442 | 2024-11-21 10:46 | 2013-01-25 | Show | GitHub Exploit DB Packet Storm | |
| 291674 | - | rockwellautomation |
guardlogix_controllers compactlogix_controllers 1794-aentr_flex_i\/o_ethernet\/ip_adapter flexlogix_1788-enbt_adapter micrologix guardlogix 1768-enbt 1756-enbt compactlogix | Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E controllers; 1788-ENBT FLEXLogix adapter; 1794-AENTR FLEX I/… |
CWE-200
Information Exposure |
CVE-2012-6441 | 2024-11-21 10:46 | 2013-01-25 | Show | GitHub Exploit DB Packet Storm | |
| 291675 | - | rockwellautomation |
guardlogix_controllers compactlogix_controllers 1794-aentr_flex_i\/o_ethernet\/ip_adapter flexlogix_1788-enbt_adapter micrologix guardlogix 1768-enbt 1756-enbt compactlogix | The web-server password-authentication functionality in Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E cont… |
CWE-287
Improper Authentication |
CVE-2012-6440 | 2024-11-21 10:46 | 2013-01-25 | Show | GitHub Exploit DB Packet Storm | |
| 291676 | - | rockwellautomation |
guardlogix_controllers compactlogix_controllers 1794-aentr_flex_i\/o_ethernet\/ip_adapter flexlogix_1788-enbt_adapter micrologix guardlogix 1768-enbt 1756-enbt compactlogix | Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E controllers; 1788-ENBT FLEXLogix adapter; 1794-AENTR FLEX I/… |
NVD-CWE-Other
|
CVE-2012-6439 | 2024-11-21 10:46 | 2013-01-25 | Show | GitHub Exploit DB Packet Storm | |
| 291677 | - | rockwellautomation |
guardlogix_controllers compactlogix_controllers 1794-aentr_flex_i\/o_ethernet\/ip_adapter flexlogix_1788-enbt_adapter micrologix guardlogix 1768-enbt 1756-enbt compactlogix | Buffer overflow in Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E controllers; 1788-ENBT FLEXLogix adapter;… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2012-6438 | 2024-11-21 10:46 | 2013-01-25 | Show | GitHub Exploit DB Packet Storm | |
| 291678 | - | rockwellautomation |
guardlogix_controllers compactlogix_controllers 1794-aentr_flex_i\/o_ethernet\/ip_adapter flexlogix_1788-enbt_adapter micrologix guardlogix 1768-enbt 1756-enbt compactlogix | Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E controllers; 1788-ENBT FLEXLogix adapter; 1794-AENTR FLEX I/… |
CWE-287
Improper Authentication |
CVE-2012-6437 | 2024-11-21 10:46 | 2013-01-25 | Show | GitHub Exploit DB Packet Storm | |
| 291679 | - | rockwellautomation |
guardlogix_controllers compactlogix_controllers 1794-aentr_flex_i\/o_ethernet\/ip_adapter flexlogix_1788-enbt_adapter micrologix guardlogix 1768-enbt 1756-enbt compactlogix | Buffer overflow in Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E controllers; 1788-ENBT FLEXLogix adapter;… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2012-6436 | 2024-11-21 10:46 | 2013-01-25 | Show | GitHub Exploit DB Packet Storm | |
| 291680 | - | elefantcms | elefantcms | Cross-site scripting (XSS) vulnerability in apps/admin/handlers/versions.php in Elefant CMS 1.2.0 allows remote attackers to inject arbitrary web script or HTML via the id parameter to admin/versions. |
CWE-79
Cross-site Scripting |
CVE-2012-6521 | 2024-11-21 10:46 | 2013-01-24 | Show | GitHub Exploit DB Packet Storm |