|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 5, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 219401 | 4.3 | 警告 | Aanyfont plugin project | - | WordPress 用 AnyFont プラグインの mce_anyfont/dialog.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2014-4515 | 2014-07-3 15:45 | 2014-05-28 | Show | GitHub Exploit DB Packet Storm |
| 219402 | 4.3 | 警告 | ActiveHelper | - | WordPress 用 ActiveHelper LiveHelp Live Chat プラグインの server/offline.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2014-4513 | 2014-07-3 15:44 | 2014-05-28 | Show | GitHub Exploit DB Packet Storm |
| 219403 | 3.5 | 注意 | DELL EMC (旧 EMC Corporation) | - | EMC Documentum eRoom におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2014-2512 | 2014-07-3 09:51 | 2014-06-30 | Show | GitHub Exploit DB Packet Storm |
| 219404 | 5.4 | 警告 | DELL EMC (旧 EMC Corporation) | - | EMC Network Configuration Manager の Report Advisor コンポーネントにおける Web セッションをハイジャックされる脆弱性 |
CWE-Other
その他 |
CVE-2014-2509 | 2014-07-3 09:47 | 2014-06-30 | Show | GitHub Exploit DB Packet Storm |
| 219405 | 4 | 警告 | 株式会社アイ・オー・データ機器 | - | RockDisk におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2013-4713 | 2014-07-2 14:08 | 2013-10-29 | Show | GitHub Exploit DB Packet Storm |
| 219406 | 9.3 | 危険 | マイクロソフト | - | Microsoft Internet Explorer 6 から 11 における任意のコードを実行される脆弱性 |
CWE-119
バッファエラー |
CVE-2014-1815 | 2014-07-2 12:52 | 2014-05-13 | Show | GitHub Exploit DB Packet Storm |
| 219407 | 8.5 | 危険 | マイクロソフト | - | Microsoft Web Applications 2010 における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2014-1813 | 2014-07-2 12:50 | 2014-05-13 | Show | GitHub Exploit DB Packet Storm |
| 219408 | 9.3 | 危険 | マイクロソフト | - | Microsoft Office における権限昇格の脆弱性 |
CWE-Other
その他 |
CVE-2014-1756 | 2014-07-2 12:49 | 2014-05-13 | Show | GitHub Exploit DB Packet Storm |
| 219409 | 6.8 | 警告 | IBM | - | IBM WebSphere Portal における重要な情報を取得される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2014-0954 | 2014-07-2 11:10 | 2014-05-13 | Show | GitHub Exploit DB Packet Storm |
| 219410 | 4.3 | 警告 | 株式会社インターコム | - | Web給金帳におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2014-2006 | 2014-07-1 17:24 | 2014-06-25 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 6, 2026, 4:18 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 291081 | 9.8 |
CRITICAL
Network |
hubot_scripts_project | hubot_scripts | scripts/email.coffee in the Hubot Scripts module before 2.4.4 for Node.js allows remote attackers to execute arbitrary commands. |
CWE-74
Injection |
CVE-2013-7378 | 2024-11-21 11:00 | 2020-02-12 | Show | GitHub Exploit DB Packet Storm |
| 291082 | 9.8 |
CRITICAL
Network |
dlink | dir-100_firmware | D-Link DIR-100 4.03B07 has PPTP and poe information disclosure |
CWE-522
Insufficiently Protected Credentials |
CVE-2013-7055 | 2024-11-21 11:00 | 2020-02-4 | Show | GitHub Exploit DB Packet Storm |
| 291083 | 6.1 |
MEDIUM
Network |
dlink | dir-100_firmware | D-Link DIR-100 4.03B07: cli.cgi XSS |
CWE-79
Cross-site Scripting |
CVE-2013-7054 | 2024-11-21 11:00 | 2020-02-4 | Show | GitHub Exploit DB Packet Storm |
| 291084 | 8.8 |
HIGH
Network |
dlink | dir-100_firmware | D-Link DIR-100 4.03B07: cli.cgi CSRF |
CWE-352
Origin Validation Error |
CVE-2013-7053 | 2024-11-21 11:00 | 2020-02-4 | Show | GitHub Exploit DB Packet Storm |
| 291085 | 9.8 |
CRITICAL
Network |
dlink | dir-100_firmware | D-Link DIR-100 4.03B07: security bypass via an error in the cliget.cgi script |
CWE-522
Insufficiently Protected Credentials |
CVE-2013-7052 | 2024-11-21 11:00 | 2020-02-4 | Show | GitHub Exploit DB Packet Storm |
| 291086 | 8.8 |
HIGH
Network |
dlink | dir-100_firmware | D-Link DIR-100 4.03B07: cli.cgi security bypass due to failure to check authentication parameters |
CWE-287
Improper Authentication |
CVE-2013-7051 | 2024-11-21 11:00 | 2020-02-4 | Show | GitHub Exploit DB Packet Storm |
| 291087 | 9.8 |
CRITICAL
Network |
zohocorp | manageengine_desktop_central | Unrestricted file upload vulnerability in AgentLogUploadServlet in ManageEngine DesktopCentral 7.x and 8.0.0 before build 80293 allows remote attackers to execute arbitrary code by uploading a file w… |
CWE-434
Unrestricted Upload of File with Dangerous Type |
CVE-2013-7390 | 2024-11-21 11:00 | 2020-01-28 | Show | GitHub Exploit DB Packet Storm |
| 291088 | 7.8 |
HIGH
Local |
daum | potplayer | PotPlayer 1.5.40688: .avi File Memory Corruption |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2013-7185 | 2024-11-21 11:00 | 2020-01-15 | Show | GitHub Exploit DB Packet Storm |
| 291089 | 9.8 |
CRITICAL
Network |
ep_imageconvert_project | ep_imageconvert | The Etherpad Lite ep_imageconvert Plugin has a Remote Command Injection Vulnerability |
CWE-74
Injection |
CVE-2013-7380 | 2024-11-21 11:00 | 2020-01-10 | Show | GitHub Exploit DB Packet Storm |
| 291090 | 6.1 |
MEDIUM
Network |
shaarli_project | shaarli | Multiple cross-site scripting (XSS) vulnerabilities in index.php in Shaarli allow remote attackers to inject arbitrary web script or HTML via the URL to the (1) showRSS, (2) showATOM, or (3) showDail… |
CWE-79
Cross-site Scripting |
CVE-2013-7351 | 2024-11-21 11:00 | 2020-01-3 | Show | GitHub Exploit DB Packet Storm |