|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 20, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 241581 | 6.8 | 警告 | XnSoft | - | XnView におけるヒープベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2012-0282 | 2012-07-19 16:15 | 2012-07-17 | Show | GitHub Exploit DB Packet Storm |
| 241582 | 6.8 | 警告 | XnSoft | - | XnView におけるヒープベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2012-0277 | 2012-07-19 16:14 | 2012-07-17 | Show | GitHub Exploit DB Packet Storm |
| 241583 | 6.8 | 警告 | XnSoft | - | XnView におけるヒープベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2012-0276 | 2012-07-19 16:13 | 2012-07-17 | Show | GitHub Exploit DB Packet Storm |
| 241584 | 7.5 | 危険 | Moodle | - | Moodle の lib/formslib.php における脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2012-0801 | 2012-07-18 18:52 | 2012-01-17 | Show | GitHub Exploit DB Packet Storm |
| 241585 | 2.1 | 注意 | Moodle | - | Moodle のフォームオートコンプリート機能におけるパスワードを見つけられる脆弱性 |
CWE-200
情報漏えい |
CVE-2012-0800 | 2012-07-18 18:51 | 2012-01-17 | Show | GitHub Exploit DB Packet Storm |
| 241586 | 4.3 | 警告 | Moodle | - | Moodle におけるセッションキーを取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2012-0799 | 2012-07-18 18:41 | 2012-01-17 | Show | GitHub Exploit DB Packet Storm |
| 241587 | 5.5 | 警告 | Moodle | - | Moodle の self-enrolment 機能における manager ロールを取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2012-0798 | 2012-07-18 18:39 | 2012-01-17 | Show | GitHub Exploit DB Packet Storm |
| 241588 | 5.5 | 警告 | Moodle | - | Moodle の Web サービス機能における削除ステータスを回避される脆弱性 |
CWE-16
環境設定 |
CVE-2012-0797 | 2012-07-18 18:39 | 2012-01-17 | Show | GitHub Exploit DB Packet Storm |
| 241589 | 4 | 警告 | Moodle | - | Moodle およびその他の製品で使用される PHPMailer library における任意の電子メールヘッダーを挿入される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2012-0796 | 2012-07-18 18:35 | 2012-01-17 | Show | GitHub Exploit DB Packet Storm |
| 241590 | 6.5 | 警告 | Moodle | - | Moodle における脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2012-0795 | 2012-07-18 18:35 | 2012-01-17 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 21, 2026, 4:10 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 266441 | 7.5 |
HIGH
Network |
canonical xmlsoft debian hp opensuse |
ubuntu_linux libxml2 debian_linux icewall_file_manager icewall_federation_agent leap |
The (1) xmlParserEntityCheck and (2) xmlParseAttValueComplex functions in parser.c in libxml2 2.9.3 do not properly keep track of the recursion depth, which allows context-dependent attackers to caus… |
CWE-20
Improper Input Validation |
CVE-2016-3705 | 2024-11-21 11:50 | 2016-05-17 | Show | GitHub Exploit DB Packet Storm |
| 266442 | 7.5 |
HIGH
Network |
fedoraproject debian xstream_project |
fedora debian_linux xstream |
Multiple XML external entity (XXE) vulnerabilities in the (1) Dom4JDriver, (2) DomDriver, (3) JDomDriver, (4) JDom2Driver, (5) SjsxpDriver, (6) StandardStaxDriver, and (7) WstxDriver drivers in XStre… |
CWE-200
Information Exposure |
CVE-2016-3674 | 2024-11-21 11:50 | 2016-05-17 | Show | GitHub Exploit DB Packet Storm |
| 266443 | 7.5 |
HIGH
Network |
opensuse debian hp xmlsoft canonical redhat oracle |
leap debian_linux icewall_file_manager icewall_federation_agent libxml2 ubuntu_linux enterprise_linux_desktop enterprise_linux_server_aus enterprise_linux_workstation enter… |
The xmlStringGetNodeList function in tree.c in libxml2 2.9.3 and earlier, when used in recovery mode, allows context-dependent attackers to cause a denial of service (infinite recursion, stack consum… |
CWE-674
Uncontrolled Recursion |
CVE-2016-3627 | 2024-11-21 11:50 | 2016-05-17 | Show | GitHub Exploit DB Packet Storm |
| 266444 | 5.5 |
MEDIUM
Local |
oracle qemu canonical debian redhat citrix |
vm_server qemu ubuntu_linux debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_tus enterprise_linux_server_aus<… |
Integer overflow in the VGA module in QEMU allows local guest OS users to cause a denial of service (out-of-bounds read and QEMU process crash) by editing VGA registers in VBE mode. |
CWE-190
Integer Overflow or Wraparound |
CVE-2016-3712 | 2024-11-21 11:50 | 2016-05-12 | Show | GitHub Exploit DB Packet Storm |
| 266445 | 8.8 |
HIGH
Local |
debian hp canonical qemu oracle citrix redhat |
debian_linux helion_openstack ubuntu_linux qemu linux vm_server xenserver enterprise_linux_desktop enterprise_linux_server_aus enterprise_linux_workstation enterprise_li… |
The VGA module in QEMU improperly performs bounds checking on banked access to video memory, which allows local guest OS administrators to execute arbitrary code on the host by changing access modes … |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2016-3710 | 2024-11-21 11:50 | 2016-05-12 | Show | GitHub Exploit DB Packet Storm |
| 266446 | 5.5 |
MEDIUM
Local |
canonical redhat imagemagick |
ubuntu_linux enterprise_linux_server_supplementary_eus enterprise_linux_desktop enterprise_linux_server_aus enterprise_linux_workstation enterprise_linux_server enterprise_linux_hpc… |
The LABEL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows remote attackers to read arbitrary files via a crafted image. |
CWE-200
Information Exposure |
CVE-2016-3717 | 2024-11-21 11:50 | 2016-05-6 | Show | GitHub Exploit DB Packet Storm |
| 266447 | 3.3 |
LOW
Local |
canonical imagemagick redhat |
ubuntu_linux imagemagick enterprise_linux_server_supplementary_eus enterprise_linux_desktop enterprise_linux_server_aus enterprise_linux_workstation enterprise_linux_server enter… |
The MSL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows remote attackers to move arbitrary files via a crafted image. |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2016-3716 | 2024-11-21 11:50 | 2016-05-6 | Show | GitHub Exploit DB Packet Storm |
| 266448 | 4.6 |
MEDIUM
Physics |
novell linux canonical |
suse_linux_enterprise_module_for_public_cloud suse_linux_enterprise_server suse_linux_enterprise_live_patching suse_linux_enterprise_desktop suse_linux_enterprise_real_time_extension s… |
The ims_pcu_parse_cdc_data function in drivers/input/misc/ims-pcu.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (system crash) via a USB device… |
NVD-CWE-Other
|
CVE-2016-3689 | 2024-11-21 11:50 | 2016-05-2 | Show | GitHub Exploit DB Packet Storm |
| 266449 | 7.8 |
HIGH
Local |
canonical novell linux |
ubuntu_linux suse_linux_enterprise_module_for_public_cloud suse_linux_enterprise_server suse_linux_enterprise_live_patching suse_linux_enterprise_real_time_extension suse_linux_enterpr… |
The arch_pick_mmap_layout function in arch/x86/mm/mmap.c in the Linux kernel through 4.5.2 does not properly randomize the legacy base address, which makes it easier for local users to defeat the int… |
CWE-254
7PK - Security Features |
CVE-2016-3672 | 2024-11-21 11:50 | 2016-04-28 | Show | GitHub Exploit DB Packet Storm |
| 266450 | 9.1 |
CRITICAL
Network |
oracle | field_service | Unspecified vulnerability in the Oracle Field Service component in Oracle E-Business Suite 12.1.1, 12.1.2, and 12.1.3 allows remote attackers to affect confidentiality and integrity via vectors relat… |
NVD-CWE-noinfo
|
CVE-2016-3466 | 2024-11-21 11:50 | 2016-04-21 | Show | GitHub Exploit DB Packet Storm |