|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 15, 2026, 4 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 231001 | 7.5 | 危険 | php-update | - | PHP-Update の code/guestadd.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2006-6880 | 2012-12-20 18:02 | 2006-12-31 | Show | GitHub Exploit DB Packet Storm |
| 231002 | 6 | 警告 | php-update | - | PHP-Update の admin/uploads.php における任意のコードをアップロードおよび実行される脆弱性 | - | CVE-2006-6879 | 2012-12-20 18:02 | 2006-12-31 | Show | GitHub Exploit DB Packet Storm |
| 231003 | 7.5 | 危険 | php-update | - | PHP-Update の admin/uploads.php における権限を取得される脆弱性 | - | CVE-2006-6878 | 2012-12-20 18:02 | 2006-12-31 | Show | GitHub Exploit DB Packet Storm |
| 231004 | 6.8 | 警告 | Zen Cart | - | Zen Cart Web Shopping Cart におけるクロスサイトスクリプティングの脆弱性 | - | CVE-2006-6868 | 2012-12-20 18:02 | 2006-12-30 | Show | GitHub Exploit DB Packet Storm |
| 231005 | 7.5 | 危険 | vladimir meshakov | - | Vladimir Menshakov buratinable templator における PHP リモートファイルインクルージョンの脆弱性 | - | CVE-2006-6867 | 2012-12-20 18:02 | 2006-12-31 | Show | GitHub Exploit DB Packet Storm |
| 231006 | 7.8 | 危険 | stphp | - | STphp EasyNews におけるユーザ名などを取得される脆弱性 | - | CVE-2006-6866 | 2012-12-20 18:02 | 2006-12-31 | Show | GitHub Exploit DB Packet Storm |
| 231007 | 7.8 | 危険 | softartisans | - | SAFileUp の SAFileUpSamples/util/viewsrc.asp におけるディレクトリトラバーサルの脆弱性 | - | CVE-2006-6865 | 2012-12-20 18:02 | 2006-12-31 | Show | GitHub Exploit DB Packet Storm |
| 231008 | 10 | 危険 | website designs for less | - | Website Designs For Less Click N' Print Coupons の coupon_detail.asp における SQL インジェクションの脆弱性 | - | CVE-2006-6859 | 2012-12-20 18:02 | 2006-12-31 | Show | GitHub Exploit DB Packet Storm |
| 231009 | 7.5 | 危険 | webtext | - | WebText CMS における wt/users/ 配下のスクリプトへ任意の PHP コードを挿入される脆弱性 | - | CVE-2006-6856 | 2012-12-20 18:02 | 2006-12-31 | Show | GitHub Exploit DB Packet Storm |
| 231010 | 7.5 | 危険 | shadowed works | - | Shadowed Portal の include.php における PHP リモートファイルインクルージョンの脆弱性 | - | CVE-2006-6850 | 2012-12-20 18:02 | 2006-12-31 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 15, 2026, 4:28 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 292341 | - | w-cms | w-cms | Directory traversal vulnerability in the getContent function in codes/wcms.php in w-CMS 2.01 allows remote attackers to read arbitrary files via a .. (dot dot) in the p parameter. NOTE: some of thes… |
CWE-22
Path Traversal |
CVE-2012-6522 | 2024-11-21 10:46 | 2013-01-31 | Show | GitHub Exploit DB Packet Storm | |
| 292342 | - | foxitsoftware | foxit_advanced_pdf_editor | Stack-based buffer overflow in Foxit Advanced PDF Editor 3 before 3.04 might allow remote attackers to execute arbitrary code via a crafted document containing instructions that reconstruct a certain… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2013-0107 | 2024-11-21 10:46 | 2013-01-27 | Show | GitHub Exploit DB Packet Storm | |
| 292343 | - | rockwellautomation |
ethernet\/ip_firmware compactlogix_firmware flexlogix_firmware flex_i\/o_ethernet\/ip__firmware micrologix_firmware softlogix_controllers_firmware compactlogix_controllers_firmware<… |
Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E controllers; 1788-ENBT FLEXLogix adapter; 1794-AENTR FLEX I/… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2012-6442 | 2024-11-21 10:46 | 2013-01-25 | Show | GitHub Exploit DB Packet Storm | |
| 292344 | - | rockwellautomation |
guardlogix_controllers compactlogix_controllers 1794-aentr_flex_i\/o_ethernet\/ip_adapter flexlogix_1788-enbt_adapter micrologix guardlogix 1768-enbt 1756-enbt compactlogix | Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E controllers; 1788-ENBT FLEXLogix adapter; 1794-AENTR FLEX I/… |
CWE-200
Information Exposure |
CVE-2012-6441 | 2024-11-21 10:46 | 2013-01-25 | Show | GitHub Exploit DB Packet Storm | |
| 292345 | - | rockwellautomation |
guardlogix_controllers compactlogix_controllers 1794-aentr_flex_i\/o_ethernet\/ip_adapter flexlogix_1788-enbt_adapter micrologix guardlogix 1768-enbt 1756-enbt compactlogix | The web-server password-authentication functionality in Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E cont… |
CWE-287
Improper Authentication |
CVE-2012-6440 | 2024-11-21 10:46 | 2013-01-25 | Show | GitHub Exploit DB Packet Storm | |
| 292346 | - | rockwellautomation |
guardlogix_controllers compactlogix_controllers 1794-aentr_flex_i\/o_ethernet\/ip_adapter flexlogix_1788-enbt_adapter micrologix guardlogix 1768-enbt 1756-enbt compactlogix | Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E controllers; 1788-ENBT FLEXLogix adapter; 1794-AENTR FLEX I/… |
NVD-CWE-Other
|
CVE-2012-6439 | 2024-11-21 10:46 | 2013-01-25 | Show | GitHub Exploit DB Packet Storm | |
| 292347 | - | rockwellautomation |
guardlogix_controllers compactlogix_controllers 1794-aentr_flex_i\/o_ethernet\/ip_adapter flexlogix_1788-enbt_adapter micrologix guardlogix 1768-enbt 1756-enbt compactlogix | Buffer overflow in Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E controllers; 1788-ENBT FLEXLogix adapter;… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2012-6438 | 2024-11-21 10:46 | 2013-01-25 | Show | GitHub Exploit DB Packet Storm | |
| 292348 | - | rockwellautomation |
guardlogix_controllers compactlogix_controllers 1794-aentr_flex_i\/o_ethernet\/ip_adapter flexlogix_1788-enbt_adapter micrologix guardlogix 1768-enbt 1756-enbt compactlogix | Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E controllers; 1788-ENBT FLEXLogix adapter; 1794-AENTR FLEX I/… |
CWE-287
Improper Authentication |
CVE-2012-6437 | 2024-11-21 10:46 | 2013-01-25 | Show | GitHub Exploit DB Packet Storm | |
| 292349 | - | rockwellautomation |
guardlogix_controllers compactlogix_controllers 1794-aentr_flex_i\/o_ethernet\/ip_adapter flexlogix_1788-enbt_adapter micrologix guardlogix 1768-enbt 1756-enbt compactlogix | Buffer overflow in Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E controllers; 1788-ENBT FLEXLogix adapter;… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2012-6436 | 2024-11-21 10:46 | 2013-01-25 | Show | GitHub Exploit DB Packet Storm | |
| 292350 | - | elefantcms | elefantcms | Cross-site scripting (XSS) vulnerability in apps/admin/handlers/versions.php in Elefant CMS 1.2.0 allows remote attackers to inject arbitrary web script or HTML via the id parameter to admin/versions. |
CWE-79
Cross-site Scripting |
CVE-2012-6521 | 2024-11-21 10:46 | 2013-01-24 | Show | GitHub Exploit DB Packet Storm |