|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 20, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 242551 | 4.3 | 警告 | fr.simon rundell TYPO3 Association |
- | TYPO3 の hs_religiousartgallery 拡張におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4398 | 2012-06-26 16:18 | 2008-07-9 | Show | GitHub Exploit DB Packet Storm |
| 242552 | 4.3 | 警告 | fr.simon rundell TYPO3 Association |
- | TYPO3 の pd_resources 拡張におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4397 | 2012-06-26 16:18 | 2008-07-9 | Show | GitHub Exploit DB Packet Storm |
| 242553 | 4.3 | 警告 | fr.simon rundell TYPO3 Association |
- | TYPO3 の ste_prayer2 拡張におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4395 | 2012-06-26 16:18 | 2008-07-9 | Show | GitHub Exploit DB Packet Storm |
| 242554 | 7.5 | 危険 | fr.simon rundell TYPO3 Association |
- | TYPO3 の ste_prayer2 における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4394 | 2012-06-26 16:18 | 2008-07-9 | Show | GitHub Exploit DB Packet Storm |
| 242555 | 4.7 | 警告 | FreeBSD | - | FreeBSD の freebsd-update における重要なファイルのコピーを読まれる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-4358 | 2012-06-26 16:18 | 2009-12-3 | Show | GitHub Exploit DB Packet Storm |
| 242556 | 7.5 | 危険 | boldfx | - | Arctic Issue Tracker の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4350 | 2012-06-26 16:18 | 2009-12-17 | Show | GitHub Exploit DB Packet Storm |
| 242557 | 4.3 | 警告 | TYPO3 Association dominic eckart |
- | TYPO3 の trainincdb 拡張におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-4343 | 2012-06-26 16:18 | 2009-12-17 | Show | GitHub Exploit DB Packet Storm |
| 242558 | 6.8 | 警告 | eocms | - | eoCMS の js/bbcodepress/bbcode-form.php における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-4319 | 2012-06-26 16:18 | 2009-12-14 | Show | GitHub Exploit DB Packet Storm |
| 242559 | 7.5 | 危険 | Drupal brian miller |
- | Drupal の Taxonomy Timer モジュールにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-4296 | 2012-06-26 16:18 | 2009-12-11 | Show | GitHub Exploit DB Packet Storm |
| 242560 | 6.8 | 警告 | barnraiser | - | AROUNDMe の components/core/connect.php における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-4264 | 2012-06-26 16:18 | 2009-12-10 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 20, 2026, 4:14 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 268581 | 5.4 |
MEDIUM
Network |
cpanel | cpanel | cPanel before 60.0.25 allows self stored XSS in SSL_listkeys (SEC-182). |
CWE-79
Cross-site Scripting |
CVE-2016-10783 | 2024-11-21 11:44 | 2019-08-6 | Show | GitHub Exploit DB Packet Storm |
| 268582 | 5.4 |
MEDIUM
Network |
cpanel | cpanel | cPanel before 60.0.25 allows self stored XSS in postgres API1 listdbs (SEC-181). |
CWE-79
Cross-site Scripting |
CVE-2016-10782 | 2024-11-21 11:44 | 2019-08-6 | Show | GitHub Exploit DB Packet Storm |
| 268583 | 5.4 |
MEDIUM
Network |
cpanel | cpanel | cPanel before 60.0.25 allows self XSS in the UI_confirm API (SEC-180). |
CWE-79
Cross-site Scripting |
CVE-2016-10781 | 2024-11-21 11:44 | 2019-08-6 | Show | GitHub Exploit DB Packet Storm |
| 268584 | 5.4 |
MEDIUM
Network |
cpanel | cpanel | cPanel before 60.0.25 allows stored XSS in the ftp_sessions API (SEC-180). |
CWE-79
Cross-site Scripting |
CVE-2016-10780 | 2024-11-21 11:44 | 2019-08-6 | Show | GitHub Exploit DB Packet Storm |
| 268585 | 5.4 |
MEDIUM
Network |
cpanel | cpanel | cPanel before 60.0.25 allows stored XSS in api1_listautoresponders (SEC-179). |
CWE-79
Cross-site Scripting |
CVE-2016-10779 | 2024-11-21 11:44 | 2019-08-6 | Show | GitHub Exploit DB Packet Storm |
| 268586 | 5.4 |
MEDIUM
Network |
cpanel | cpanel | cPanel before 60.0.25 allows self stored XSS in the listftpstable API (SEC-178). |
CWE-79
Cross-site Scripting |
CVE-2016-10778 | 2024-11-21 11:44 | 2019-08-6 | Show | GitHub Exploit DB Packet Storm |
| 268587 | 5.4 |
MEDIUM
Network |
cpanel | cpanel | cPanel before 60.0.25 allows self XSS in WHM Tweak Settings for autodiscover_host (SEC-177). |
CWE-79
Cross-site Scripting |
CVE-2016-10777 | 2024-11-21 11:44 | 2019-08-6 | Show | GitHub Exploit DB Packet Storm |
| 268588 | 5.4 |
MEDIUM
Network |
cpanel | cpanel | cPanel before 60.0.25 allows stored XSS during the homedir removal phase of WHM Account termination (SEC-174). |
CWE-79
Cross-site Scripting |
CVE-2016-10776 | 2024-11-21 11:44 | 2019-08-6 | Show | GitHub Exploit DB Packet Storm |
| 268589 | 6.5 |
MEDIUM
Network |
cpanel | cpanel | cPanel before 60.0.25 allows arbitrary file-chown operations via reassign_post_terminate_cruft (SEC-173). |
CWE-20
Improper Input Validation |
CVE-2016-10775 | 2024-11-21 11:44 | 2019-08-5 | Show | GitHub Exploit DB Packet Storm |
| 268590 | 5.4 |
MEDIUM
Network |
cpanel | cpanel | cPanel before 60.0.25 allows self XSS in the tail_ea4_migration.cgi interface (SEC-172). |
CWE-79
Cross-site Scripting |
CVE-2016-10774 | 2024-11-21 11:44 | 2019-08-5 | Show | GitHub Exploit DB Packet Storm |