|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 19, 2026, 2 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 241411 | 5.5 | 警告 | Tryton | - | Tryton アプリケーションフレームワークにおける任意のユーザの権限を変更される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2012-0215 | 2012-07-17 16:09 | 2012-03-28 | Show | GitHub Exploit DB Packet Storm |
| 241412 | 5 | 警告 | Tiki Software Community Association | - | TikiWiki CMS/Groupware におけるインストールパスを取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2012-3996 | 2012-07-17 16:04 | 2012-07-12 | Show | GitHub Exploit DB Packet Storm |
| 241413 | 7.5 | 危険 | Adrian Chadd | - | RTG および RTG2 における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2012-3881 | 2012-07-17 16:03 | 2012-07-12 | Show | GitHub Exploit DB Packet Storm |
| 241414 | 4.3 | 警告 | Kajona | - | Kajona の system/functions.php におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2012-3805 | 2012-07-17 16:01 | 2012-07-12 | Show | GitHub Exploit DB Packet Storm |
| 241415 | 7.5 | 危険 | artis.imag | - | Basilic の Config/diff.php における任意のコマンドを実行される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2012-3399 | 2012-07-17 15:59 | 2012-07-12 | Show | GitHub Exploit DB Packet Storm |
| 241416 | 7.5 | 危険 | Apache Software Foundation | - | Apache Hadoop の DataNode における任意のブロックを読まれる脆弱性 |
CWE-310
暗号の問題 |
CVE-2012-3376 | 2012-07-17 15:57 | 2012-07-12 | Show | GitHub Exploit DB Packet Storm |
| 241417 | 3.6 | 注意 | suckless.org | - | slock における重要な情報を取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2012-1620 | 2012-07-17 15:45 | 2012-07-12 | Show | GitHub Exploit DB Packet Storm |
| 241418 | 7.5 | 危険 | Tiki Software Community Association | - | TikiWiki CMS/Groupware における任意の PHP コードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2012-0911 | 2012-07-17 15:43 | 2012-07-12 | Show | GitHub Exploit DB Packet Storm |
| 241419 | 9.3 | 危険 | - | Google Chrome の PDF 機能におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-DesignError
|
CVE-2012-2844 | 2012-07-17 11:22 | 2012-07-11 | Show | GitHub Exploit DB Packet Storm | |
| 241420 | 9.3 | 危険 | マイクロソフト | - | Microsoft Windows のシェルにおける任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2012-0175 | 2012-07-13 16:19 | 2012-07-10 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 19, 2026, 4:16 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 266521 | 4.6 |
MEDIUM
Physics |
novell canonical linux |
suse_linux_enterprise_module_for_public_cloud suse_linux_enterprise_server suse_linux_enterprise_live_patching suse_linux_enterprise_real_time_extension suse_linux_enterprise_desktop s… |
drivers/usb/serial/cypress_m8.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) via a USB device withou… |
NVD-CWE-Other
|
CVE-2016-3137 | 2024-11-21 11:49 | 2016-05-2 | Show | GitHub Exploit DB Packet Storm |
| 266522 | 4.6 |
MEDIUM
Physics |
linux novell canonical |
linux_kernel suse_linux_enterprise_module_for_public_cloud suse_linux_enterprise_server suse_linux_enterprise_live_patching suse_linux_enterprise_desktop suse_linux_enterprise_real_tim… |
The mct_u232_msr_to_state function in drivers/usb/serial/mct_u232.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and s… |
NVD-CWE-Other
|
CVE-2016-3136 | 2024-11-21 11:49 | 2016-05-2 | Show | GitHub Exploit DB Packet Storm |
| 266523 | 5.5 |
MEDIUM
Local |
novell canonical linux |
suse_linux_enterprise_module_for_public_cloud suse_linux_enterprise_server suse_linux_enterprise_live_patching suse_linux_enterprise_real_time_extension suse_linux_enterprise_desktop s… |
The IPv4 implementation in the Linux kernel before 4.5.2 mishandles destruction of device objects, which allows guest OS users to cause a denial of service (host OS networking outage) by arranging fo… |
CWE-399
Resource Management Errors |
CVE-2016-3156 | 2024-11-21 11:49 | 2016-04-28 | Show | GitHub Exploit DB Packet Storm |
| 266524 | 7.8 |
HIGH
Local |
linux canonical |
linux_kernel ubuntu_linux |
Integer overflow in the xt_alloc_table_info function in net/netfilter/x_tables.c in the Linux kernel through 4.5.2 on 32-bit platforms allows local users to gain privileges or cause a denial of servi… |
CWE-189 NVD-CWE-Other Numeric Errors |
CVE-2016-3135 | 2024-11-21 11:49 | 2016-04-28 | Show | GitHub Exploit DB Packet Storm |
| 266525 | 4.6 |
MEDIUM
Physics |
novell linux |
suse_linux_enterprise_module_for_public_cloud suse_linux_enterprise_server suse_linux_enterprise_live_patching suse_linux_enterprise_real_time_extension suse_linux_enterprise_desktop s… |
The wacom_probe function in drivers/input/tablet/wacom_sys.c in the Linux kernel before 3.17 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system cr… |
NVD-CWE-Other
|
CVE-2016-3139 | 2024-11-21 11:49 | 2016-04-28 | Show | GitHub Exploit DB Packet Storm |
| 266526 | 8.4 |
HIGH
Local |
novell linux |
suse_linux_enterprise_module_for_public_cloud suse_linux_enterprise_server suse_linux_enterprise_live_patching suse_linux_enterprise_desktop suse_linux_enterprise_real_time_extension s… |
The netfilter subsystem in the Linux kernel through 4.5.2 does not validate certain offset fields, which allows local users to gain privileges or cause a denial of service (heap memory corruption) vi… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2016-3134 | 2024-11-21 11:49 | 2016-04-28 | Show | GitHub Exploit DB Packet Storm |
| 266527 | 9.8 |
CRITICAL
Network |
apache | struts | XSLTResult in Apache Struts 2.x before 2.3.20.2, 2.3.24.x before 2.3.24.2, and 2.3.28.x before 2.3.28.1 allows remote attackers to execute arbitrary code via the stylesheet location parameter. |
CWE-20
Improper Input Validation |
CVE-2016-3082 | 2024-11-21 11:49 | 2016-04-26 | Show | GitHub Exploit DB Packet Storm |
| 266528 | 8.1 |
HIGH
Network |
apache oracle |
struts siebel_e-billing |
Apache Struts 2.3.19 to 2.3.20.2, 2.3.21 to 2.3.24.1, and 2.3.25 to 2.3.28, when Dynamic Method Invocation is enabled, allow remote attackers to execute arbitrary code via method: prefix, related to … |
CWE-77
Command Injection |
CVE-2016-3081 | 2024-11-21 11:49 | 2016-04-26 | Show | GitHub Exploit DB Packet Storm |
| 266529 | 9.8 |
CRITICAL
Network |
libgd debian fedoraproject canonical opensuse php |
libgd debian_linux fedora ubuntu_linux opensuse php |
Integer signedness error in GD Graphics Library 2.1.1 (aka libgd or libgd2) allows remote attackers to cause a denial of service (crash) or potentially execute arbitrary code via crafted compressed g… |
CWE-681
Incorrect Conversion between Numeric Types |
CVE-2016-3074 | 2024-11-21 11:49 | 2016-04-26 | Show | GitHub Exploit DB Packet Storm |
| 266530 | 6.1 |
MEDIUM
Network |
blackberry | enterprise_server | Cross-site scripting (XSS) vulnerability in the Management Console in BlackBerry Enterprise Server (BES) 12 before 12.4.1 allows remote attackers to inject arbitrary web script or HTML via a crafted … |
CWE-79
Cross-site Scripting |
CVE-2016-3126 | 2024-11-21 11:49 | 2016-04-23 | Show | GitHub Exploit DB Packet Storm |