|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 1, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 232011 | 7.5 | 危険 | webblizzard | - | WebBlizzard CMS におけるセッションをハイジャックされる脆弱性 |
CWE-287
不適切な認証 |
CVE-2007-1949 | 2012-12-20 18:19 | 2007-04-10 | Show | GitHub Exploit DB Packet Storm |
| 232012 | 6.8 | 警告 | scar4u.de | - | ScarAdControl の scaradcontrol.php における PHP リモートファイルインクルージョンの脆弱性 | - | CVE-2007-1936 | 2012-12-20 18:19 | 2007-04-10 | Show | GitHub Exploit DB Packet Storm |
| 232013 | 6.8 | 警告 | scar4u.de | - | ScarAdControl の admin/index.php における任意の PHP コードを実行される脆弱性 | - | CVE-2007-1935 | 2012-12-20 18:19 | 2007-04-10 | Show | GitHub Exploit DB Packet Storm |
| 232014 | 6.8 | 警告 | PHPNUKE | - | PHP-Nuke 用の eBoard モジュールにおけるディレクトリトラバーサルの脆弱性 | - | CVE-2007-1934 | 2012-12-20 18:19 | 2007-04-10 | Show | GitHub Exploit DB Packet Storm |
| 232015 | 7.5 | 危険 | scar4u | - | ScarNews の scarnews.inc.php におけるディレクトリトラバーサルの脆弱性 | - | CVE-2007-1932 | 2012-12-20 18:19 | 2007-04-10 | Show | GitHub Exploit DB Packet Storm |
| 232016 | 7.5 | 危険 | smodcms | - | SmodCMS の slownik モジュール における SQL インジェクションの脆弱性 | - | CVE-2007-1931 | 2012-12-20 18:19 | 2007-04-10 | Show | GitHub Exploit DB Packet Storm |
| 232017 | 7.5 | 危険 | witshare | - | witshare の index.php におけるディレクトリトラバーサルの脆弱性 | - | CVE-2007-1928 | 2012-12-20 18:19 | 2007-04-10 | Show | GitHub Exploit DB Packet Storm |
| 232018 | 4.3 | 警告 | Youngzsoft | - | CmailServer WebMail の signup.asp におけるクロスサイトスクリプティングの脆弱性 | - | CVE-2007-1927 | 2012-12-20 18:19 | 2007-04-10 | Show | GitHub Exploit DB Packet Storm |
| 232019 | 6.5 | 警告 | tru-zone | - | Tru-Zone Nuke ET の modules/Your_Account/index.php における任意のアカウントを削除される脆弱性 | - | CVE-2007-1925 | 2012-12-20 18:19 | 2007-04-10 | Show | GitHub Exploit DB Packet Storm |
| 232020 | 7.5 | 危険 | smodbip | - | SmodBIP の aktualnosci モジュールの index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2007-1920 | 2012-12-20 18:19 | 2007-04-10 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 1, 2026, 4:12 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 291241 | 6.1 |
MEDIUM
Network |
sensiolabs fedoraproject |
symfony fedora |
Symfony 2.0.X before 2.0.24, 2.1.X before 2.1.12, 2.2.X before 2.2.5, and 2.3.X before 2.3.3 have an issue in the HttpFoundation component. The Host header can be manipulated by an attacker when the … |
CWE-79
Cross-site Scripting |
CVE-2013-4752 | 2024-11-21 10:56 | 2020-01-3 | Show | GitHub Exploit DB Packet Storm |
| 291242 | 9.8 |
CRITICAL
Network |
o-dyn | collabtive | Collabtive 1.0 has incorrect access control |
CWE-269
Improper Privilege Management |
CVE-2013-5027 | 2024-11-21 10:56 | 2019-12-28 | Show | GitHub Exploit DB Packet Storm |
| 291243 | 7.5 |
HIGH
Network |
vivotek |
ip7160_firmware ip7361_firmware ip8332_firmware |
Multiple Vivotek IP Cameras remote authentication bypass that could allow access to the video stream |
CWE-863
Incorrect Authorization |
CVE-2013-4985 | 2024-11-21 10:56 | 2019-12-28 | Show | GitHub Exploit DB Packet Storm |
| 291244 | 9.8 |
CRITICAL
Network |
avtech | avn801_dvr_firmware | AVTECH AVN801 DVR has a security bypass via the administration login captcha |
CWE-287
Improper Authentication |
CVE-2013-4982 | 2024-11-21 10:56 | 2019-12-28 | Show | GitHub Exploit DB Packet Storm |
| 291245 | 9.8 |
CRITICAL
Network |
hikvision | ds-2cd7153-e_firmware | Hikvision DS-2CD7153-E IP Camera has security bypass via hardcoded credentials |
CWE-287
Improper Authentication |
CVE-2013-4976 | 2024-11-21 10:56 | 2019-12-28 | Show | GitHub Exploit DB Packet Storm |
| 291246 | 8.8 |
HIGH
Network |
hikvision | ds-2cd7153-e_firmware | Hikvision DS-2CD7153-E IP Camera has Privilege Escalation |
CWE-269
Improper Privilege Management |
CVE-2013-4975 | 2024-11-21 10:56 | 2019-12-28 | Show | GitHub Exploit DB Packet Storm |
| 291247 | 5.3 |
MEDIUM
Network |
karotz | api | Karotz API 12.07.19.00: Session Token Information Disclosure |
CWE-200
Information Exposure |
CVE-2013-4868 | 2024-11-21 10:56 | 2019-12-28 | Show | GitHub Exploit DB Packet Storm |
| 291248 | 6.3 |
MEDIUM
Physics |
ea | karotz_smart_rabbit_firmware | Electronic Arts Karotz Smart Rabbit 12.07.19.00 allows Python module hijacking |
CWE-269
Improper Privilege Management |
CVE-2013-4867 | 2024-11-21 10:56 | 2019-12-28 | Show | GitHub Exploit DB Packet Storm |
| 291249 | 8.1 |
HIGH
Network |
insteon | hub_firmware | INSTEON Hub 2242-222 lacks Web and API authentication |
CWE-276
Incorrect Default Permissions |
CVE-2013-4859 | 2024-11-21 10:56 | 2019-12-28 | Show | GitHub Exploit DB Packet Storm |
| 291250 | 8.8 |
HIGH
Network |
reviewboard | reviewboard | ReviewBoard 1.6.17 allows code execution by attaching PHP scripts to review request |
CWE-434
Unrestricted Upload of File with Dangerous Type |
CVE-2013-4796 | 2024-11-21 10:56 | 2019-12-28 | Show | GitHub Exploit DB Packet Storm |