|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 31, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 245101 | 7.5 | 危険 | ezonescripts | - | eZoneScripts Living Local の listtest.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-3943 | 2012-06-26 16:02 | 2008-09-5 | Show | GitHub Exploit DB Packet Storm |
| 245102 | 4.3 | 警告 | bizdirectory | - | BizDirectory におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-3941 | 2012-06-26 16:02 | 2008-09-5 | Show | GitHub Exploit DB Packet Storm |
| 245103 | 5 | 警告 | AVTECH | - | AVTECH PageR Enterprise の Web インターフェースにおけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2008-3939 | 2012-06-26 16:02 | 2008-09-5 | Show | GitHub Exploit DB Packet Storm |
| 245104 | 7.8 | 危険 | DreamBox | - | Dreambox DM500C の Web インターフェースにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2008-3936 | 2012-06-26 16:02 | 2008-09-5 | Show | GitHub Exploit DB Packet Storm |
| 245105 | 9.3 | 危険 | EZB Systems | - | UltraISO におけるフォーマットストリングの脆弱性 |
CWE-134
書式文字列の問題 |
CVE-2008-3871 | 2012-06-26 16:02 | 2009-04-1 | Show | GitHub Exploit DB Packet Storm |
| 245106 | 6.9 | 警告 | Debian | - | Citadel Server の migrate_aliases.sh における任意のファイルを上書きされる脆弱性 |
CWE-59
リンク解釈の問題 |
CVE-2008-3930 | 2012-06-26 16:02 | 2008-08-24 | Show | GitHub Exploit DB Packet Storm |
| 245107 | 7.2 | 危険 | Ampache.org | - | Ampache の gather-messages.sh における任意のファイルを上書きされる脆弱性 |
CWE-59
リンク解釈の問題 |
CVE-2008-3929 | 2012-06-26 16:02 | 2008-09-4 | Show | GitHub Exploit DB Packet Storm |
| 245108 | 6.9 | 警告 | Debian | - | Honeyd の test.sh における任意のファイルを上書きされる脆弱性 |
CWE-59
リンク解釈の問題 |
CVE-2008-3928 | 2012-06-26 16:02 | 2008-08-24 | Show | GitHub Exploit DB Packet Storm |
| 245109 | 7.5 | 危険 | bitlbee | - | BitlBee における既存のアカウントを "再作成" される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-3920 | 2012-06-26 16:02 | 2008-09-4 | Show | GitHub Exploit DB Packet Storm |
| 245110 | 5.8 | 警告 | Django Software Foundation | - | Django の管理アプリケーションにおけるデータを削除される脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2008-3909 | 2012-06-26 16:02 | 2008-09-4 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 31, 2026, 4:16 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 253011 | 9.1 |
CRITICAL
Network |
mozilla | firefox | An issue with incorrect ownership model of "privateBrowsing" information exposed through developer tools. This can result in a non-exploitable crash when manually triggered during debugging. This vul… |
CWE-665
Improper Initialization |
CVE-2017-5468 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 253012 | 7.5 |
HIGH
Network |
redhat mozilla |
enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server thunderbird firefox firefox_esr |
A potential memory corruption and crash when using Skia content when drawing content outside of the bounds of a clipping region. This vulnerability affects Thunderbird < 52.1, Firefox ESR < 52.1, and… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2017-5467 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 253013 | 5.3 |
MEDIUM
Network |
mozilla | firefox | Android intents can be used to launch Firefox for Android in reader mode with a user specified URL. This allows an attacker to spoof the contents of the addressbar as displayed to users. Note: This a… |
CWE-20
Improper Input Validation |
CVE-2017-5463 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 253014 | 5.3 |
MEDIUM
Network |
debian mozilla |
debian_linux thunderbird firefox firefox_esr network_security_services |
A flaw in DRBG number generation within the Network Security Services (NSS) library where the internal state V does not correctly carry bits over. The NSS library has been updated to fix this issue t… |
CWE-682
Incorrect Calculation |
CVE-2017-5462 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 253015 | 9.8 |
CRITICAL
Network |
redhat debian mozilla |
enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus debian_linux thunderbird firefox firefox_… |
A buffer overflow in WebGL triggerable by web content, resulting in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.1, Firefox ESR < 45.9, Firefox ESR < 52.1, and Firefox… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2017-5459 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 253016 | 6.1 |
MEDIUM
Network |
redhat mozilla |
enterprise_linux_desktop enterprise_linux_workstation enterprise_linux enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus thunderbird firefox fire… |
If a page is loaded from an original site through a hyperlink and contains a redirect to a "data:text/html" URL, triggering a reload will run the reloaded "data:text/html" page with its origin set in… |
CWE-79
Cross-site Scripting |
CVE-2017-5466 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 253017 | 9.1 |
CRITICAL
Network |
debian redhat mozilla |
debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus thunderbird | An out-of-bounds read while processing SVG content in "ConvolvePixel". This results in a crash and also allows for otherwise inaccessible memory being copied into SVG graphic content, which could the… |
CWE-125
Out-of-bounds Read |
CVE-2017-5465 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 253018 | 9.8 |
CRITICAL
Network |
debian redhat mozilla |
debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus firefox thu… |
During DOM manipulations of the accessibility tree through script, the DOM tree can become out of sync with the accessibility tree, leading to memory corruption and a potentially exploitable crash. T… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2017-5464 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 253019 | 9.8 |
CRITICAL
Network |
debian redhat mozilla |
debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux enterprise_linux_server enterprise_linux_server_aus enterprise_linux_server_eus firefox thu… |
A use-after-free vulnerability in frame selection triggered by a combination of malicious script content and key presses by a user. This results in a potentially exploitable crash. This vulnerability… |
CWE-416
Use After Free |
CVE-2017-5460 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 253020 | 6.1 |
MEDIUM
Network |
mozilla | firefox | When a "javascript:" URL is drag and dropped by a user into the addressbar, the URL will be processed and executed. This allows for users to be socially engineered to execute an XSS attack on themsel… |
CWE-79
Cross-site Scripting |
CVE-2017-5458 | 2024-11-21 12:27 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |