|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 22, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 219831 | 5 | 警告 | シスコシステムズ | - | Cisco ONS 15454 コントローラカードのソフトウェアにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-noinfo
情報不足 |
CVE-2014-2140 | 2014-04-15 12:26 | 2014-04-8 | Show | GitHub Exploit DB Packet Storm |
| 219832 | 5 | 警告 | シスコシステムズ | - | Cisco ONS 15454 コントローラカードのソフトウェアにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-noinfo
情報不足 |
CVE-2014-2139 | 2014-04-15 12:25 | 2014-04-8 | Show | GitHub Exploit DB Packet Storm |
| 219833 | 7.5 | 危険 | SAP | - | SAP エンタープライズポータルにおける権限を取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2013-7367 | 2014-04-15 12:21 | 2013-02-21 | Show | GitHub Exploit DB Packet Storm |
| 219834 | 5 | 警告 | SAP | - | SAP ソフトウェアデプロイメントマネージャにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-287
不適切な認証 |
CVE-2013-7366 | 2014-04-15 12:20 | 2013-02-21 | Show | GitHub Exploit DB Packet Storm |
| 219835 | 4.3 | 警告 | SAP | - | SAP エンタープライズポータルにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2013-7365 | 2014-04-15 12:20 | 2013-02-21 | Show | GitHub Exploit DB Packet Storm |
| 219836 | 7.5 | 危険 | SAP | - | SAP NetWeaver の J2EE エンジンの不特定の J2EE コアサービスにおける任意のファイルを読まれる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2013-7364 | 2014-04-15 12:19 | 2013-02-21 | Show | GitHub Exploit DB Packet Storm |
| 219837 | 7.5 | 危険 | SAP | - | SAP Solution Manager の Diagnostics エージェントにおける重要な情報を取得される脆弱性 |
CWE-noinfo
情報不足 |
CVE-2013-7363 | 2014-04-15 12:19 | 2013-02-21 | Show | GitHub Exploit DB Packet Storm |
| 219838 | 7.5 | 危険 | SAP | - | SAP CCMS エージェントの不特定の RFC 機能における任意のコマンドを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2013-7362 | 2014-04-15 12:18 | 2013-02-21 | Show | GitHub Exploit DB Packet Storm |
| 219839 | 5 | 警告 | SAP | - | SAP CMS および CM Services におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2013-7361 | 2014-04-15 12:18 | 2013-05-11 | Show | GitHub Exploit DB Packet Storm |
| 219840 | 7.5 | 危険 | SAP | - | SAP adminadapter における任意のファイルを読まれる脆弱性 |
CWE-noinfo
情報不足 |
CVE-2013-7360 | 2014-04-15 12:17 | 2013-03-27 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 22, 2026, 4:08 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 295041 | - |
mozilla redhat canonical suse |
firefox thunderbird_esr thunderbird seamonkey enterprise_linux_server enterprise_linux_workstation ubuntu_linux enterprise_linux_desktop enterprise_linux_eus linux_enterpri… |
The Chrome Object Wrapper (COW) implementation in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 d… |
CWE-79
Cross-site Scripting |
CVE-2012-4184 | 2024-11-21 10:42 | 2012-10-11 | Show | GitHub Exploit DB Packet Storm | |
| 295042 | - |
mozilla redhat canonical suse opensuse |
firefox thunderbird_esr thunderbird seamonkey enterprise_linux_server enterprise_linux_workstation ubuntu_linux enterprise_linux_desktop enterprise_linux_eus linux_enterpri… |
Use-after-free vulnerability in the DOMSVGTests::GetRequiredFeatures function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0… |
CWE-416
Use After Free |
CVE-2012-4183 | 2024-11-21 10:42 | 2012-10-11 | Show | GitHub Exploit DB Packet Storm | |
| 295043 | - |
mozilla redhat canonical |
firefox thunderbird_esr thunderbird seamonkey enterprise_linux_server enterprise_linux_workstation ubuntu_linux enterprise_linux_desktop enterprise_linux_eus |
Use-after-free vulnerability in the nsSMILAnimationController::DoSample function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 1… |
CWE-416
Use After Free |
CVE-2012-4181 | 2024-11-21 10:42 | 2012-10-11 | Show | GitHub Exploit DB Packet Storm | |
| 295044 | - |
mozilla redhat canonical suse debian |
firefox thunderbird_esr thunderbird seamonkey enterprise_linux_server enterprise_linux_workstation ubuntu_linux enterprise_linux_desktop enterprise_linux_eus linux_enterpri… |
Use-after-free vulnerability in the nsTextEditRules::WillInsert function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, a… |
CWE-416
Use After Free |
CVE-2012-4182 | 2024-11-21 10:42 | 2012-10-11 | Show | GitHub Exploit DB Packet Storm | |
| 295045 | - |
mozilla redhat canonical suse debian |
firefox thunderbird_esr thunderbird seamonkey enterprise_linux_server enterprise_linux_workstation ubuntu_linux enterprise_linux_desktop enterprise_linux_eus linux_enterpri… |
Heap-based buffer overflow in the nsHTMLEditor::IsPrevCharInNodeWhitespace function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x befor… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2012-4180 | 2024-11-21 10:42 | 2012-10-11 | Show | GitHub Exploit DB Packet Storm | |
| 295046 | - |
mozilla redhat canonical suse debian |
firefox thunderbird_esr thunderbird seamonkey enterprise_linux_server enterprise_linux_workstation ubuntu_linux enterprise_linux_desktop enterprise_linux_eus linux_enterpri… |
Use-after-free vulnerability in the nsHTMLCSSUtils::CreateCSSPropertyTxn function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before … |
CWE-416
Use After Free |
CVE-2012-4179 | 2024-11-21 10:42 | 2012-10-11 | Show | GitHub Exploit DB Packet Storm | |
| 295047 | - |
dracut_project fedoraproject redhat |
dracut fedora enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation |
dracut.sh in dracut, as used in Red Hat Enterprise Linux 6, Fedora 16 and 17, and possibly other products, creates initramfs images with world-readable permissions, which might allow local users to o… |
CWE-276
Incorrect Default Permissions |
CVE-2012-4453 | 2024-11-21 10:42 | 2012-10-10 | Show | GitHub Exploit DB Packet Storm | |
| 295048 | - | apache | axis2 | Apache Axis2 allows remote attackers to forge messages and bypass authentication via an "XML Signature wrapping attack." |
CWE-287
Improper Authentication |
CVE-2012-4418 | 2024-11-21 10:42 | 2012-10-10 | Show | GitHub Exploit DB Packet Storm | |
| 295049 | 7.5 |
HIGH
Network |
cakefoundation | cakephp | The Xml class in CakePHP 2.1.x before 2.1.5 and 2.2.x before 2.2.1 allows remote attackers to read arbitrary files via XML data containing external entity references, aka an XML external entity (XXE)… |
CWE-611
XXE |
CVE-2012-4399 | 2024-11-21 10:42 | 2012-10-10 | Show | GitHub Exploit DB Packet Storm |
| 295050 | - | glpi-project | glpi | Multiple cross-site scripting (XSS) vulnerabilities in GLPI-PROJECT GLPI before 0.83.3 allow remote attackers to inject arbitrary web script or HTML via unknown vectors. |
CWE-79
Cross-site Scripting |
CVE-2012-4003 | 2024-11-21 10:42 | 2012-10-10 | Show | GitHub Exploit DB Packet Storm |