|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 6, 2026, 4 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 250951 | 5 | 警告 | GPLHost | - | DTC における重要な帯域幅の情報を取得される脆弱性 |
CWE-287
不適切な認証 |
CVE-2011-0435 | 2012-03-27 18:42 | 2011-03-7 | Show | GitHub Exploit DB Packet Storm |
| 250952 | 7.5 | 危険 | GPLHost | - | DTC における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-0434 | 2012-03-27 18:42 | 2011-03-7 | Show | GitHub Exploit DB Packet Storm |
| 250953 | 7.5 | 危険 | simon pamies | - | PyWebDAV の get_userinfo メソッドにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-0432 | 2012-03-27 18:42 | 2011-03-14 | Show | GitHub Exploit DB Packet Storm |
| 250954 | 5 | 警告 | OpenAFS | - | OpenAFS の kernel モジュールの afs_linux_lock 関数におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2011-0431 | 2012-03-27 18:42 | 2011-02-18 | Show | GitHub Exploit DB Packet Storm |
| 250955 | 7.5 | 危険 | OpenAFS | - | OpenAFS の Rx サーバプロセスにおける任意のコードを実行される脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2011-0430 | 2012-03-27 18:42 | 2011-02-18 | Show | GitHub Exploit DB Packet Storm |
| 250956 | 6.8 | 警告 | The Tor Project | - | Tor におけるヒープベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2011-0427 | 2012-03-27 18:42 | 2011-01-17 | Show | GitHub Exploit DB Packet Storm |
| 250957 | 4.3 | 警告 | VMware | - | VMware vCenter の vCenter Server におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2011-0426 | 2012-03-27 18:42 | 2011-05-5 | Show | GitHub Exploit DB Packet Storm |
| 250958 | 7.5 | 危険 | PolyVision | - | PolyVision RoomWizard におけるコンソールアクセスを取得される脆弱性 |
CWE-255
証明書・パスワード管理 |
CVE-2011-0423 | 2012-03-27 18:42 | 2011-01-11 | Show | GitHub Exploit DB Packet Storm |
| 250959 | 4 | 警告 | pureftpd NetBSD |
- | Pure-FTPd および NetBSD の glob 実装におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2011-0418 | 2012-03-27 18:42 | 2011-05-24 | Show | GitHub Exploit DB Packet Storm |
| 250960 | 7.5 | 危険 | phenotype-cms | - | Phenotype CMS の store 関数における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-0407 | 2012-03-27 18:42 | 2011-01-10 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 6, 2026, 4:18 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 258321 | 7.5 |
HIGH
Network |
wireshark debian |
wireshark debian_linux |
In Wireshark before 2.2.12, the MRDISC dissector misuses a NULL pointer and crashes. This was addressed in epan/dissectors/packet-mrdisc.c by validating an IPv4 address. This vulnerability is similar… |
CWE-476
NULL Pointer Dereference |
CVE-2017-17997 | 2024-11-21 12:19 | 2017-12-30 | Show | GitHub Exploit DB Packet Storm |
| 258322 | 5.4 |
MEDIUM
Network |
iwcnetwork | biometric_shift_employee_management_system | Biometric Shift Employee Management System has XSS via the Last_Name parameter in an index.php?user=ajax request. |
CWE-79
Cross-site Scripting |
CVE-2017-17995 | 2024-11-21 12:19 | 2017-12-30 | Show | GitHub Exploit DB Packet Storm |
| 258323 | 5.4 |
MEDIUM
Network |
iwcnetwork | biometric_shift_employee_management_system | Biometric Shift Employee Management System has XSS via the criteria parameter in an index.php?user=competency_criteria request. |
CWE-79
Cross-site Scripting |
CVE-2017-17994 | 2024-11-21 12:19 | 2017-12-30 | Show | GitHub Exploit DB Packet Storm |
| 258324 | 5.4 |
MEDIUM
Network |
iwcnetwork | biometric_shift_employee_management_system | Biometric Shift Employee Management System has XSS via the amount parameter in an index.php?user=addition_deduction request. |
CWE-79
Cross-site Scripting |
CVE-2017-17993 | 2024-11-21 12:19 | 2017-12-30 | Show | GitHub Exploit DB Packet Storm |
| 258325 | 9.8 |
CRITICAL
Network |
iwcnetwork | biometric_shift_employee_management_system | Biometric Shift Employee Management System allows Arbitrary File Download via directory traversal sequences in the index.php form_file_name parameter in a download_form action. |
CWE-22
Path Traversal |
CVE-2017-17992 | 2024-11-21 12:19 | 2017-12-30 | Show | GitHub Exploit DB Packet Storm |
| 258326 | 5.4 |
MEDIUM
Network |
iwcnetwork | biometric_shift_employee_management_system | Biometric Shift Employee Management System has XSS via the expense_name parameter in an index.php?user=expenses request. |
CWE-79
Cross-site Scripting |
CVE-2017-17991 | 2024-11-21 12:19 | 2017-12-30 | Show | GitHub Exploit DB Packet Storm |
| 258327 | 8.8 |
HIGH
Network |
iwcnetwork | biometric_shift_employee_management_system | Biometric Shift Employee Management System has CSRF via index.php in an edit_holiday action. |
CWE-352
Origin Validation Error |
CVE-2017-17990 | 2024-11-21 12:19 | 2017-12-30 | Show | GitHub Exploit DB Packet Storm |
| 258328 | 5.4 |
MEDIUM
Network |
iwcnetwork | biometric_shift_employee_management_system | Biometric Shift Employee Management System has XSS via the index.php holiday_name parameter in an edit_holiday action. |
CWE-79
Cross-site Scripting |
CVE-2017-17989 | 2024-11-21 12:19 | 2017-12-30 | Show | GitHub Exploit DB Packet Storm |
| 258329 | 4.8 |
MEDIUM
Network |
muslim_matrimonial_script_project | muslim_matrimonial_script | PHP Scripts Mall Muslim Matrimonial Script has XSS via the admin/event_add.php event_title parameter. |
CWE-79
Cross-site Scripting |
CVE-2017-17988 | 2024-11-21 12:19 | 2017-12-30 | Show | GitHub Exploit DB Packet Storm |
| 258330 | 7.2 |
HIGH
Network |
muslim_matrimonial_script_project | muslim_matrimonial_script | PHP Scripts Mall Muslim Matrimonial Script allows arbitrary file upload via admin/mydetails_edit.php. |
CWE-434
Unrestricted Upload of File with Dangerous Type |
CVE-2017-17987 | 2024-11-21 12:19 | 2017-12-30 | Show | GitHub Exploit DB Packet Storm |