|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 6, 2026, noon
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 250431 | 10 | 危険 | SmarterTools Inc. | - | SmarterTools SmarterStats Web サーバの Admin/frmSite.aspx における任意コマンドを実行される脆弱性 |
CWE-78
OSコマンド・インジェクション |
CVE-2011-2148 | 2012-03-27 18:43 | 2011-05-20 | Show | GitHub Exploit DB Packet Storm |
| 250432 | 3.6 | 注意 | Openswan | - | Openswan における任意のプロセスを kill される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-2147 | 2012-03-27 18:43 | 2011-05-20 | Show | GitHub Exploit DB Packet Storm |
| 250433 | 5 | 警告 | IBM | - | IBM Datacap Taskmaster Capture の eDocument Conversion Actions 実装におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2011-2144 | 2012-03-27 18:43 | 2011-05-13 | Show | GitHub Exploit DB Packet Storm |
| 250434 | 6.8 | 警告 | IBM | - | IBM Datacap Taskmaster Captureにおけるログインのアクセス権を取得される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-2143 | 2012-03-27 18:43 | 2011-05-13 | Show | GitHub Exploit DB Packet Storm |
| 250435 | 5 | 警告 | IBM | - | IBM Datacap Taskmaster Capture の Web Client Service における平文のパスワードを要求する脆弱性 |
CWE-310
暗号の問題 |
CVE-2011-2142 | 2012-03-27 18:43 | 2011-05-13 | Show | GitHub Exploit DB Packet Storm |
| 250436 | 7.5 | 危険 | IBM | - | IBM Datacap Taskmaster Capture の TMWeb におけるSQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-2141 | 2012-03-27 18:43 | 2011-05-13 | Show | GitHub Exploit DB Packet Storm |
| 250437 | 5 | 警告 | opensymphony Apache Software Foundation |
- | Apache Struts の XWork における重要情報を取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2011-2088 | 2012-03-27 18:43 | 2011-05-13 | Show | GitHub Exploit DB Packet Storm |
| 250438 | 4.3 | 警告 | Apache Software Foundation | - | Apache Struts の javatemplates プラグインにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-2087 | 2012-03-27 18:43 | 2011-05-13 | Show | GitHub Exploit DB Packet Storm |
| 250439 | 5 | 警告 | inventivetec | - | MediaCAST における重要な情報を取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2011-2081 | 2012-03-27 18:43 | 2011-05-10 | Show | GitHub Exploit DB Packet Storm |
| 250440 | 7.5 | 危険 | inventivetec | - | MediaCAST における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-2080 | 2012-03-27 18:43 | 2011-05-10 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 6, 2026, 4:18 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 291081 | 9.8 |
CRITICAL
Network |
hubot_scripts_project | hubot_scripts | scripts/email.coffee in the Hubot Scripts module before 2.4.4 for Node.js allows remote attackers to execute arbitrary commands. |
CWE-74
Injection |
CVE-2013-7378 | 2024-11-21 11:00 | 2020-02-12 | Show | GitHub Exploit DB Packet Storm |
| 291082 | 9.8 |
CRITICAL
Network |
dlink | dir-100_firmware | D-Link DIR-100 4.03B07 has PPTP and poe information disclosure |
CWE-522
Insufficiently Protected Credentials |
CVE-2013-7055 | 2024-11-21 11:00 | 2020-02-4 | Show | GitHub Exploit DB Packet Storm |
| 291083 | 6.1 |
MEDIUM
Network |
dlink | dir-100_firmware | D-Link DIR-100 4.03B07: cli.cgi XSS |
CWE-79
Cross-site Scripting |
CVE-2013-7054 | 2024-11-21 11:00 | 2020-02-4 | Show | GitHub Exploit DB Packet Storm |
| 291084 | 8.8 |
HIGH
Network |
dlink | dir-100_firmware | D-Link DIR-100 4.03B07: cli.cgi CSRF |
CWE-352
Origin Validation Error |
CVE-2013-7053 | 2024-11-21 11:00 | 2020-02-4 | Show | GitHub Exploit DB Packet Storm |
| 291085 | 9.8 |
CRITICAL
Network |
dlink | dir-100_firmware | D-Link DIR-100 4.03B07: security bypass via an error in the cliget.cgi script |
CWE-522
Insufficiently Protected Credentials |
CVE-2013-7052 | 2024-11-21 11:00 | 2020-02-4 | Show | GitHub Exploit DB Packet Storm |
| 291086 | 8.8 |
HIGH
Network |
dlink | dir-100_firmware | D-Link DIR-100 4.03B07: cli.cgi security bypass due to failure to check authentication parameters |
CWE-287
Improper Authentication |
CVE-2013-7051 | 2024-11-21 11:00 | 2020-02-4 | Show | GitHub Exploit DB Packet Storm |
| 291087 | 9.8 |
CRITICAL
Network |
zohocorp | manageengine_desktop_central | Unrestricted file upload vulnerability in AgentLogUploadServlet in ManageEngine DesktopCentral 7.x and 8.0.0 before build 80293 allows remote attackers to execute arbitrary code by uploading a file w… |
CWE-434
Unrestricted Upload of File with Dangerous Type |
CVE-2013-7390 | 2024-11-21 11:00 | 2020-01-28 | Show | GitHub Exploit DB Packet Storm |
| 291088 | 7.8 |
HIGH
Local |
daum | potplayer | PotPlayer 1.5.40688: .avi File Memory Corruption |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2013-7185 | 2024-11-21 11:00 | 2020-01-15 | Show | GitHub Exploit DB Packet Storm |
| 291089 | 9.8 |
CRITICAL
Network |
ep_imageconvert_project | ep_imageconvert | The Etherpad Lite ep_imageconvert Plugin has a Remote Command Injection Vulnerability |
CWE-74
Injection |
CVE-2013-7380 | 2024-11-21 11:00 | 2020-01-10 | Show | GitHub Exploit DB Packet Storm |
| 291090 | 6.1 |
MEDIUM
Network |
shaarli_project | shaarli | Multiple cross-site scripting (XSS) vulnerabilities in index.php in Shaarli allow remote attackers to inject arbitrary web script or HTML via the URL to the (1) showRSS, (2) showATOM, or (3) showDail… |
CWE-79
Cross-site Scripting |
CVE-2013-7351 | 2024-11-21 11:00 | 2020-01-3 | Show | GitHub Exploit DB Packet Storm |