|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 8, 2026, 10 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 222351 | 4.3 | 警告 | 株式会社ロックオン | - | EC-CUBE におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2013-3652 | 2014-01-31 16:28 | 2013-06-27 | Show | GitHub Exploit DB Packet Storm |
| 222352 | 7.5 | 危険 | 株式会社ロックオン | - | EC-CUBE におけるコードインジェクションの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2013-3651 | 2014-01-31 16:27 | 2013-06-27 | Show | GitHub Exploit DB Packet Storm |
| 222353 | 5 | 警告 | 株式会社ロックオン | - | EC-CUBE におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2013-3650 | 2014-01-31 16:26 | 2013-06-27 | Show | GitHub Exploit DB Packet Storm |
| 222354 | 5 | 警告 | 株式会社ロックオン | - | EC-CUBE における不適切な入力確認に起因する情報漏えいの脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2013-2315 | 2014-01-31 16:22 | 2013-05-23 | Show | GitHub Exploit DB Packet Storm |
| 222355 | 4 | 警告 | 株式会社ロックオン | - | EC-CUBE におけるセッション固定の脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2013-2313 | 2014-01-31 16:21 | 2013-05-23 | Show | GitHub Exploit DB Packet Storm |
| 222356 | 4.3 | 警告 | 株式会社ロックオン | - | EC-CUBE におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2013-2312 | 2014-01-31 16:20 | 2013-05-23 | Show | GitHub Exploit DB Packet Storm |
| 222357 | 7.5 | 危険 | IBM | - | IBM Security QRadar SIEM 用 AutoUpdate パッケージにおける任意のコンソールコマンドを実行される脆弱性 |
CWE-noinfo
情報不足 |
CVE-2014-0838 | 2014-01-31 15:27 | 2014-01-28 | Show | GitHub Exploit DB Packet Storm |
| 222358 | 4.3 | 警告 | IBM | - | IBM Security QRadar SIEM の AutoUpdate プロセスにおけるサーバになりすまされる脆弱性 |
CWE-310
暗号の問題 |
CVE-2014-0837 | 2014-01-31 15:26 | 2014-01-24 | Show | GitHub Exploit DB Packet Storm |
| 222359 | 4.3 | 警告 | IBM | - | IBM Security QRadar SIEM におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2014-0836 | 2014-01-31 15:26 | 2014-01-24 | Show | GitHub Exploit DB Packet Storm |
| 222360 | 6.8 | 警告 | IBM | - | IBM Security QRadar SIEM におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2014-0835 | 2014-01-31 15:25 | 2014-01-24 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 8, 2026, 4:09 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 273851 | 6.1 |
MEDIUM
Network |
admin-font-editor_project | admin-font-editor | Reflected XSS in wordpress plugin admin-font-editor v1.8 |
CWE-79
Cross-site Scripting |
CVE-2016-1000126 | 2024-11-21 11:42 | 2016-10-11 | Show | GitHub Exploit DB Packet Storm |
| 273852 | 6.1 |
MEDIUM
Network |
redhat | pagure | Pagure 2.2.1 XSS in raw file endpoint |
CWE-79
Cross-site Scripting |
CVE-2016-1000007 | 2024-11-21 11:42 | 2016-10-8 | Show | GitHub Exploit DB Packet Storm |
| 273853 | 9.8 |
CRITICAL
Network |
mirror_manager_project | mirror_manager | Mirror Manager version 0.7.2 and older is vulnerable to remote code execution in the checkin code. |
CWE-94
Code Injection |
CVE-2016-1000003 | 2024-11-21 11:42 | 2016-10-8 | Show | GitHub Exploit DB Packet Storm |
| 273854 | 7.4 |
HIGH
Network |
flask-oidc_project | flask-oidc | flask-oidc version 0.1.2 and earlier is vulnerable to an open redirect |
CWE-601
Open Redirect |
CVE-2016-1000001 | 2024-11-21 11:42 | 2016-10-8 | Show | GitHub Exploit DB Packet Storm |
| 273855 | 9.8 |
CRITICAL
Network |
huge-it | huge-it_catalog | Unauthenticated SQL Injection in Huge-IT Catalog v1.0.7 for Joomla |
CWE-89
SQL Injection |
CVE-2016-1000125 | 2024-11-21 11:42 | 2016-10-6 | Show | GitHub Exploit DB Packet Storm |
| 273856 | 9.8 |
CRITICAL
Network |
huge-it | portfolio_gallery | Unauthenticated SQL Injection in Huge-IT Portfolio Gallery Plugin v1.0.6 |
CWE-89
SQL Injection |
CVE-2016-1000124 | 2024-11-21 11:42 | 2016-10-6 | Show | GitHub Exploit DB Packet Storm |
| 273857 | 9.8 |
CRITICAL
Network |
huge-it | video_gallery | Unauthenticated SQL Injection in Huge-IT Video Gallery v1.0.9 for Joomla |
CWE-89
SQL Injection |
CVE-2016-1000123 | 2024-11-21 11:42 | 2016-10-6 | Show | GitHub Exploit DB Packet Storm |
| 273858 | 6.1 |
MEDIUM
Network |
huge-it | gallery | XSS in huge IT gallery v1.1.5 for Joomla |
CWE-79
Cross-site Scripting |
CVE-2016-1000114 | 2024-11-21 11:42 | 2016-10-6 | Show | GitHub Exploit DB Packet Storm |
| 273859 | 9.8 |
CRITICAL
Network |
huge-it | gallery | XSS and SQLi in huge IT gallery v1.1.5 for Joomla |
CWE-89
SQL Injection |
CVE-2016-1000113 | 2024-11-21 11:42 | 2016-10-6 | Show | GitHub Exploit DB Packet Storm |
| 273860 | 9.1 |
CRITICAL
Network |
contussupport | contus-video-comments | Unauthenticated remote .jpg file upload in contus-video-comments v1.0 wordpress plugin |
CWE-22
Path Traversal |
CVE-2016-1000112 | 2024-11-21 11:42 | 2016-10-6 | Show | GitHub Exploit DB Packet Storm |