|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":Feb. 9, 2026, 12:59 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 224421 | 7.5 | 危険 | razorecommerce | - | RazorCommerce Shopping Cart の category_search.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-4143 | 2012-12-20 18:52 | 2008-09-24 | Show | GitHub Exploit DB Packet Storm |
| 224422 | 7.5 | 危険 | x10media | - | x10Media x10 Automatic MP3 Script における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2008-4141 | 2012-12-20 18:52 | 2008-09-24 | Show | GitHub Exploit DB Packet Storm |
| 224423 | 10 | 危険 | technote | - | Technote の skin_shop/standard/3_plugin_twindow/twindow_notice.php における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2008-4138 | 2012-12-20 18:52 | 2008-09-24 | Show | GitHub Exploit DB Packet Storm |
| 224424 | 7.8 | 危険 | s60 | - | Nokia E90 Communicator および Nseries N82 上で稼動している Symbian OS におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2008-4135 | 2012-12-20 18:52 | 2008-09-19 | Show | GitHub Exploit DB Packet Storm |
| 224425 | 7.5 | 危険 | phprealty | - | phpRealty の manager/static/view.php における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2008-4134 | 2012-12-20 18:52 | 2008-09-19 | Show | GitHub Exploit DB Packet Storm |
| 224426 | 5 | 警告 | phpBB | - | phpBB の search 関数における重要な情報を取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2008-4125 | 2012-12-20 18:52 | 2008-09-18 | Show | GitHub Exploit DB Packet Storm |
| 224427 | 7.8 | 危険 | サン・マイクロシステムズ | - | SunMC の PRM モジュールにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-noinfo
情報不足 |
CVE-2008-4117 | 2012-12-20 18:52 | 2008-09-15 | Show | GitHub Exploit DB Packet Storm |
| 224428 | 5 | 警告 | talkback | - | TalkBack における設定情報を取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2008-4115 | 2012-12-20 18:52 | 2008-09-16 | Show | GitHub Exploit DB Packet Storm |
| 224429 | 7.2 | 危険 | Python Software Foundation | - | Python の Tools/faqwiz/move-faqwiz.sh における任意のファイルを上書きされる脆弱性 |
CWE-59
リンク解釈の問題 |
CVE-2008-4108 | 2012-12-20 18:52 | 2008-09-18 | Show | GitHub Exploit DB Packet Storm |
| 224430 | 5.1 | 警告 | WordPress.org | - | WordPress におけるユーザパスワードを任意の値に変更される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2008-4106 | 2012-12-20 18:52 | 2008-09-8 | Show | GitHub Exploit DB Packet Storm |
Update Date:April 21, 2026, 4:10 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 1791 | 7.5 |
HIGH
Network |
siemens |
scalance_m-800_firmware scalance_s615_firmware scalance_w700_ieee_802.11ax_firmware scalance_w700_ieee_802.11n_firmware scalance_w700_ieee_802.11ac_firmware scalance_xb-200_firmware | Los dispositivos afectados no manejan adecuadamente la renegociación de los parámetros SSL/TLS. Esto podría permitir a un atacante remoto no autenticado eludir la prevención de fuerza bruta de TCP y … |
CWE-770
Allocation of Resources Without Limits or Throttling |
CVE-2022-36324 | 2026-04-14 18:16 | 2022-08-10 | Show | GitHub Exploit DB Packet Storm |
| 1792 | 7.2 |
HIGH
Network |
siemens |
scalance_m-800_firmware scalance_s615_firmware scalance_sc-600_firmware scalance_sc622-2c_firmware scalance_sc632-2c_firmware scalance_sc636-2c_firmware scalance_sc642-2c_firmware | Affected devices do not properly sanitize an input field. This could allow an authenticated remote attacker with administrative privileges to inject code or spawn a system root shell. |
CWE-74 NVD-CWE-Other Injection |
CVE-2022-36323 | 2026-04-14 18:16 | 2022-08-10 | Show | GitHub Exploit DB Packet Storm |
| 1793 | 7.2 |
HIGH
Network |
siemens |
scalance_m-800_firmware scalance_s615_firmware scalance_sc-600_firmware scalance_sc622-2c_firmware scalance_sc632-2c_firmware scalance_sc636-2c_firmware scalance_sc642-2c_firmware | Los dispositivos afectados no sanean correctamente un campo de entrada. Esto podría permitir a un atacante remoto autenticado con privilegios administrativos inyectar código o generar un shell de raí… |
CWE-74 NVD-CWE-Other Injection |
CVE-2022-36323 | 2026-04-14 18:16 | 2022-08-10 | Show | GitHub Exploit DB Packet Storm |
| 1794 | 8.8 |
HIGH
Network |
siemens |
6gk6108-4am00-2ba2_firmware 6gk6108-4am00-2da2_firmware 6gk5804-0ap00-2aa2_firmware 6gk5812-1aa00-2aa2_firmware 6gk5812-1ba00-2aa2_firmware 6gk5816-1aa00-2aa2_firmware 6gk5816-1ba00… |
Affected devices do not properly authorize the change password function of the web interface. This could allow low privileged users to escalate their privileges. |
CWE-862
Missing Authorization |
CVE-2022-31765 | 2026-04-14 18:16 | 2022-10-11 | Show | GitHub Exploit DB Packet Storm |
| 1795 | 8.8 |
HIGH
Network |
siemens |
6gk6108-4am00-2ba2_firmware 6gk6108-4am00-2da2_firmware 6gk5804-0ap00-2aa2_firmware 6gk5812-1aa00-2aa2_firmware 6gk5812-1ba00-2aa2_firmware 6gk5816-1aa00-2aa2_firmware 6gk5816-1ba00… |
Los dispositivos afectados no autorizan apropiadamente la función change password de la interfaz web. Esto podría permitir a usuarios poco privilegiado escalar sus privilegios |
CWE-862
Missing Authorization |
CVE-2022-31765 | 2026-04-14 18:16 | 2022-10-11 | Show | GitHub Exploit DB Packet Storm |
| 1796 | 5.3 |
MEDIUM
Adjacent |
samsung arista siemens |
galaxy_i9305_firmware c-250_firmware c-260_firmware c-230_firmware c-235_firmware c-200_firmware c-120_firmware c-130_firmware c-100_firmware c-110_firmware o-105_firmwa… |
An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WPA, WPA2, and WPA3 implementations reassemble fragments with non-consecutive packet numbers. An adversary can abuse this to exfi… |
CWE-20
Improper Input Validation |
CVE-2020-26146 | 2026-04-14 18:16 | 2021-05-12 | Show | GitHub Exploit DB Packet Storm |
| 1797 | 5.3 |
MEDIUM
Adjacent |
samsung arista siemens |
galaxy_i9305_firmware c-250_firmware c-260_firmware c-230_firmware c-235_firmware c-200_firmware c-120_firmware c-130_firmware c-100_firmware c-110_firmware o-105_firmwa… |
Se detectó un problema en los dispositivos Samsung Galaxy S3 i9305 versión 4.4.4. Las implementaciones de WPA, WPA2 y WPA3 reensamblan fragmentos con números de paquete no consecutivos. Un adversario… |
CWE-20
Improper Input Validation |
CVE-2020-26146 | 2026-04-14 18:16 | 2021-05-12 | Show | GitHub Exploit DB Packet Storm |
| 1798 | 6.5 |
MEDIUM
Adjacent |
samsung siemens |
galaxy_i9305_firmware 6gk5763-1al00-7da0_firmware 6gk5766-1ge00-7da0_firmware 6gk5766-1ge00-7db0_firmware 6gk5766-1je00-7da0_firmware 6gk5766-1ge00-7ta0_firmware 6gk5766-1ge00-7tb0_… |
An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WEP, WPA, WPA2, and WPA3 implementations accept second (or subsequent) broadcast fragments even when sent in plaintext and proces… |
CWE-20
Improper Input Validation |
CVE-2020-26145 | 2026-04-14 18:16 | 2021-05-12 | Show | GitHub Exploit DB Packet Storm |
| 1799 | 6.5 |
MEDIUM
Adjacent |
samsung siemens |
galaxy_i9305_firmware 6gk5763-1al00-7da0_firmware 6gk5766-1ge00-7da0_firmware 6gk5766-1ge00-7db0_firmware 6gk5766-1je00-7da0_firmware 6gk5766-1ge00-7ta0_firmware 6gk5766-1ge00-7tb0_… |
Se detectó un problema en los dispositivos Samsung Galaxy S3 i9305 versión 4.4.4. Las implementaciones de WEP, WPA, WPA2 y WPA3 aceptan segundos fragmentos de transmisión (o posteriores) incluso cuan… |
CWE-20
Improper Input Validation |
CVE-2020-26145 | 2026-04-14 18:16 | 2021-05-12 | Show | GitHub Exploit DB Packet Storm |
| 1800 | 6.5 |
MEDIUM
Adjacent |
samsung arista siemens |
galaxy_i9305_firmware c-250_firmware c-260_firmware c-230_firmware c-235_firmware c-200_firmware c-120_firmware c-130_firmware c-100_firmware c-110_firmware o-105_firmwa… |
An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WEP, WPA, WPA2, and WPA3 implementations accept plaintext A-MSDU frames as long as the first 8 bytes correspond to a valid RFC104… |
CWE-20
Improper Input Validation |
CVE-2020-26144 | 2026-04-14 18:16 | 2021-05-12 | Show | GitHub Exploit DB Packet Storm |