|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 1, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 220371 | 4.3 | 警告 | Roundup | - | Roundup におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-6132 | 2014-04-14 18:31 | 2012-05-15 | Show | GitHub Exploit DB Packet Storm |
| 220372 | 6.8 | 警告 | Lester Chan | - | WordPress 用 WP-PostViews プラグインのオプションの管理者ページにおけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2013-3252 | 2014-04-14 18:26 | 2013-05-7 | Show | GitHub Exploit DB Packet Storm |
| 220373 | 6.8 | 警告 | Qian Qin | - | WordPress 用 qTranslate プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2013-3251 | 2014-04-14 18:26 | 2013-06-4 | Show | GitHub Exploit DB Packet Storm |
| 220374 | 6.8 | 警告 | Jeremy Massel | - | WordPress 用 underConstruction プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2013-2699 | 2014-04-14 18:26 | 2013-06-3 | Show | GitHub Exploit DB Packet Storm |
| 220375 | 6.8 | 警告 | Lester Chan | - | WordPress 用 WP-Print プラグインのオプションにおけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2013-2693 | 2014-04-14 18:25 | 2013-04-5 | Show | GitHub Exploit DB Packet Storm |
| 220376 | 6.8 | 警告 | Dean Adjie Minwarie | - | WordPress 用 DVS Custom Notification プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2012-4921 | 2014-04-14 18:24 | 2012-09-14 | Show | GitHub Exploit DB Packet Storm |
| 220377 | 5.8 | 警告 | kernel.org | - | Linux-PAM 用 pam_timestamp モジュールの pam_timestamp.c におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2014-2583 | 2014-04-14 18:04 | 2014-03-26 | Show | GitHub Exploit DB Packet Storm |
| 220378 | 7.5 | 危険 | Pearson Education, Inc. | - | Pearson eSIS Enterprise Student Information System のパスワードリセット機能における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2014-1455 | 2014-04-14 17:52 | 2014-04-6 | Show | GitHub Exploit DB Packet Storm |
| 220379 | 2.1 | 注意 | CloudBees | - | CloudBees Jenkins におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2013-2033 | 2014-04-14 17:38 | 2013-05-2 | Show | GitHub Exploit DB Packet Storm |
| 220380 | 6.5 | 警告 | レッドハット (KIE Group) レッドハット |
- | 複数の Red Hat Jboss 製品における任意の Java コードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2013-6468 | 2014-04-14 17:23 | 2013-11-4 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 1, 2026, 4:12 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 295841 | - | w-cms | w-cms | Directory traversal vulnerability in the getContent function in codes/wcms.php in w-CMS 2.01 allows remote attackers to read arbitrary files via a .. (dot dot) in the p parameter. NOTE: some of thes… |
CWE-22
Path Traversal |
CVE-2012-6522 | 2024-11-21 10:46 | 2013-01-31 | Show | GitHub Exploit DB Packet Storm | |
| 295842 | - | foxitsoftware | foxit_advanced_pdf_editor | Stack-based buffer overflow in Foxit Advanced PDF Editor 3 before 3.04 might allow remote attackers to execute arbitrary code via a crafted document containing instructions that reconstruct a certain… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2013-0107 | 2024-11-21 10:46 | 2013-01-27 | Show | GitHub Exploit DB Packet Storm | |
| 295843 | - | rockwellautomation |
ethernet\/ip_firmware compactlogix_firmware flexlogix_firmware flex_i\/o_ethernet\/ip__firmware micrologix_firmware softlogix_controllers_firmware compactlogix_controllers_firmware<… |
Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E controllers; 1788-ENBT FLEXLogix adapter; 1794-AENTR FLEX I/… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2012-6442 | 2024-11-21 10:46 | 2013-01-25 | Show | GitHub Exploit DB Packet Storm | |
| 295844 | - | rockwellautomation |
guardlogix_controllers compactlogix_controllers 1794-aentr_flex_i\/o_ethernet\/ip_adapter flexlogix_1788-enbt_adapter micrologix guardlogix 1768-enbt 1756-enbt compactlogix | Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E controllers; 1788-ENBT FLEXLogix adapter; 1794-AENTR FLEX I/… |
CWE-200
Information Exposure |
CVE-2012-6441 | 2024-11-21 10:46 | 2013-01-25 | Show | GitHub Exploit DB Packet Storm | |
| 295845 | - | rockwellautomation |
guardlogix_controllers compactlogix_controllers 1794-aentr_flex_i\/o_ethernet\/ip_adapter flexlogix_1788-enbt_adapter micrologix guardlogix 1768-enbt 1756-enbt compactlogix | The web-server password-authentication functionality in Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E cont… |
CWE-287
Improper Authentication |
CVE-2012-6440 | 2024-11-21 10:46 | 2013-01-25 | Show | GitHub Exploit DB Packet Storm | |
| 295846 | - | rockwellautomation |
guardlogix_controllers compactlogix_controllers 1794-aentr_flex_i\/o_ethernet\/ip_adapter flexlogix_1788-enbt_adapter micrologix guardlogix 1768-enbt 1756-enbt compactlogix | Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E controllers; 1788-ENBT FLEXLogix adapter; 1794-AENTR FLEX I/… |
NVD-CWE-Other
|
CVE-2012-6439 | 2024-11-21 10:46 | 2013-01-25 | Show | GitHub Exploit DB Packet Storm | |
| 295847 | - | rockwellautomation |
guardlogix_controllers compactlogix_controllers 1794-aentr_flex_i\/o_ethernet\/ip_adapter flexlogix_1788-enbt_adapter micrologix guardlogix 1768-enbt 1756-enbt compactlogix | Buffer overflow in Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E controllers; 1788-ENBT FLEXLogix adapter;… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2012-6438 | 2024-11-21 10:46 | 2013-01-25 | Show | GitHub Exploit DB Packet Storm | |
| 295848 | - | rockwellautomation |
guardlogix_controllers compactlogix_controllers 1794-aentr_flex_i\/o_ethernet\/ip_adapter flexlogix_1788-enbt_adapter micrologix guardlogix 1768-enbt 1756-enbt compactlogix | Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E controllers; 1788-ENBT FLEXLogix adapter; 1794-AENTR FLEX I/… |
CWE-287
Improper Authentication |
CVE-2012-6437 | 2024-11-21 10:46 | 2013-01-25 | Show | GitHub Exploit DB Packet Storm | |
| 295849 | - | rockwellautomation |
guardlogix_controllers compactlogix_controllers 1794-aentr_flex_i\/o_ethernet\/ip_adapter flexlogix_1788-enbt_adapter micrologix guardlogix 1768-enbt 1756-enbt compactlogix | Buffer overflow in Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E controllers; 1788-ENBT FLEXLogix adapter;… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2012-6436 | 2024-11-21 10:46 | 2013-01-25 | Show | GitHub Exploit DB Packet Storm | |
| 295850 | - | elefantcms | elefantcms | Cross-site scripting (XSS) vulnerability in apps/admin/handlers/versions.php in Elefant CMS 1.2.0 allows remote attackers to inject arbitrary web script or HTML via the id parameter to admin/versions. |
CWE-79
Cross-site Scripting |
CVE-2012-6521 | 2024-11-21 10:46 | 2013-01-24 | Show | GitHub Exploit DB Packet Storm |