|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 19, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 219421 | 9.3 | 危険 | Tracker Software Products | - | Tracker Software PDF-XChange におけるヒープベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2013-0729 | 2014-04-4 14:27 | 2013-01-21 | Show | GitHub Exploit DB Packet Storm |
| 219422 | 6.5 | 警告 | Postfix Admin Project | - | Postfix Admin の functions.inc.php の gen_show_status 関数における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2014-2655 | 2014-04-4 14:27 | 2014-02-19 | Show | GitHub Exploit DB Packet Storm |
| 219423 | 4.3 | 警告 | Splunk | - | Splunk の Splunk Web におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2014-2578 | 2014-04-4 12:15 | 2014-03-24 | Show | GitHub Exploit DB Packet Storm |
| 219424 | 3.5 | 注意 | OTRS プロジェクト | - | Open Ticket Request System におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2014-2553 | 2014-04-4 12:03 | 2014-04-1 | Show | GitHub Exploit DB Packet Storm |
| 219425 | 6.8 | 警告 | HitMyServer | - | WordPress 用 HMS Testimonials プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2013-4240 | 2014-04-4 11:19 | 2013-08-8 | Show | GitHub Exploit DB Packet Storm |
| 219426 | 3.5 | 注意 | IBM | - | IBM WebSphere Portal の IBM Connections 統合におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2014-0901 | 2014-04-3 18:29 | 2014-03-31 | Show | GitHub Exploit DB Packet Storm |
| 219427 | 4.3 | 警告 | IBM | - | IBM WebSphere Portal の WCM UI におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2014-0828 | 2014-04-3 18:29 | 2014-03-31 | Show | GitHub Exploit DB Packet Storm |
| 219428 | 4.3 | 警告 | シスコシステムズ | - | Cisco Security Manager の Web フレームワークにおける CRLF インジェクションの脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2014-2138 | 2014-04-3 18:22 | 2014-04-1 | Show | GitHub Exploit DB Packet Storm |
| 219429 | 4.3 | 警告 | シスコシステムズ | - | Cisco Web セキュリティ アプライアンスの Web フレームワークにおける CRLF インジェクションの脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2014-2137 | 2014-04-3 18:18 | 2014-04-1 | Show | GitHub Exploit DB Packet Storm |
| 219430 | 4.3 | 警告 | シスコシステムズ | - | Cisco Unity Connection の Web Inbox におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2014-2125 | 2014-04-3 18:17 | 2014-04-1 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 19, 2026, 4:16 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 294461 | - | w1.fi | hostapd | Heap-based buffer overflow in the eap_server_tls_process_fragment function in eap_server_tls_common.c in the EAP authentication server in hostapd 0.6 through 1.0 allows remote attackers to cause a de… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2012-4445 | 2024-11-21 10:42 | 2012-10-11 | Show | GitHub Exploit DB Packet Storm | |
| 294462 | - |
bacula debian |
bacula debian_linux |
The dump_resource function in dird/dird_conf.c in Bacula before 5.2.11 does not properly enforce ACL rules, which allows remote authenticated users to obtain resource dump information via unspecified… |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2012-4430 | 2024-11-21 10:42 | 2012-10-11 | Show | GitHub Exploit DB Packet Storm | |
| 294463 | - |
mozilla redhat canonical suse debian |
firefox thunderbird_esr thunderbird seamonkey enterprise_linux_server enterprise_linux_workstation ubuntu_linux enterprise_linux_desktop enterprise_linux_eus linux_enterpri… |
Heap-based buffer overflow in the Convolve3x3 function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey befor… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2012-4188 | 2024-11-21 10:42 | 2012-10-11 | Show | GitHub Exploit DB Packet Storm | |
| 294464 | - |
mozilla redhat canonical suse |
firefox thunderbird_esr thunderbird seamonkey enterprise_linux_server enterprise_linux_workstation ubuntu_linux enterprise_linux_desktop enterprise_linux_eus linux_enterpri… |
Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 do not properly manage a certain insPos variable, w… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2012-4187 | 2024-11-21 10:42 | 2012-10-11 | Show | GitHub Exploit DB Packet Storm | |
| 294465 | - |
mozilla redhat canonical debian suse |
firefox thunderbird_esr thunderbird seamonkey enterprise_linux_server enterprise_linux_workstation ubuntu_linux debian_linux enterprise_linux_desktop enterprise_linux_eus | Heap-based buffer overflow in the nsWaveReader::DecodeAudioData function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, a… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2012-4186 | 2024-11-21 10:42 | 2012-10-11 | Show | GitHub Exploit DB Packet Storm | |
| 294466 | - |
mozilla redhat canonical suse |
firefox thunderbird_esr thunderbird seamonkey enterprise_linux_server enterprise_linux_workstation ubuntu_linux enterprise_linux_desktop enterprise_linux_eus linux_enterpri… |
Buffer overflow in the nsCharTraits::length function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before … |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2012-4185 | 2024-11-21 10:42 | 2012-10-11 | Show | GitHub Exploit DB Packet Storm | |
| 294467 | - |
mozilla redhat canonical suse |
firefox thunderbird_esr thunderbird seamonkey enterprise_linux_server enterprise_linux_workstation ubuntu_linux enterprise_linux_desktop enterprise_linux_eus linux_enterpri… |
The Chrome Object Wrapper (COW) implementation in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 d… |
CWE-79
Cross-site Scripting |
CVE-2012-4184 | 2024-11-21 10:42 | 2012-10-11 | Show | GitHub Exploit DB Packet Storm | |
| 294468 | - |
mozilla redhat canonical suse opensuse |
firefox thunderbird_esr thunderbird seamonkey enterprise_linux_server enterprise_linux_workstation ubuntu_linux enterprise_linux_desktop enterprise_linux_eus linux_enterpri… |
Use-after-free vulnerability in the DOMSVGTests::GetRequiredFeatures function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0… |
CWE-416
Use After Free |
CVE-2012-4183 | 2024-11-21 10:42 | 2012-10-11 | Show | GitHub Exploit DB Packet Storm | |
| 294469 | - |
mozilla redhat canonical |
firefox thunderbird_esr thunderbird seamonkey enterprise_linux_server enterprise_linux_workstation ubuntu_linux enterprise_linux_desktop enterprise_linux_eus |
Use-after-free vulnerability in the nsSMILAnimationController::DoSample function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 1… |
CWE-416
Use After Free |
CVE-2012-4181 | 2024-11-21 10:42 | 2012-10-11 | Show | GitHub Exploit DB Packet Storm | |
| 294470 | - |
mozilla redhat canonical suse debian |
firefox thunderbird_esr thunderbird seamonkey enterprise_linux_server enterprise_linux_workstation ubuntu_linux enterprise_linux_desktop enterprise_linux_eus linux_enterpri… |
Use-after-free vulnerability in the nsTextEditRules::WillInsert function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, a… |
CWE-416
Use After Free |
CVE-2012-4182 | 2024-11-21 10:42 | 2012-10-11 | Show | GitHub Exploit DB Packet Storm |