|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 3, 2026, 6:08 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 250981 | 7.5 | 危険 | Joomla! | - | Joomla! における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4696 | 2012-03-27 18:42 | 2010-11-4 | Show | GitHub Exploit DB Packet Storm |
| 250982 | 4.3 | 警告 | XWiki | - | XWiki Enterprise におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-4642 | 2012-03-27 18:42 | 2010-12-30 | Show | GitHub Exploit DB Packet Storm |
| 250983 | 7.5 | 危険 | XWiki | - | XWiki Enterprise における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4641 | 2012-03-27 18:42 | 2010-12-30 | Show | GitHub Exploit DB Packet Storm |
| 250984 | 4.3 | 警告 | XWiki | - | XWiki Watch におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-4640 | 2012-03-27 18:42 | 2010-12-30 | Show | GitHub Exploit DB Packet Storm |
| 250985 | 7.5 | 危険 | intendance | - | MySource Matrix の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4639 | 2012-03-27 18:42 | 2010-12-30 | Show | GitHub Exploit DB Packet Storm |
| 250986 | 6.8 | 警告 | iptechinside | - | JQuarks4s コンポーネントの submitSurvey 関数における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4638 | 2012-03-27 18:42 | 2010-12-30 | Show | GitHub Exploit DB Packet Storm |
| 250987 | 4.3 | 警告 | finalcut | - | WordPress の FeedList プラグインにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-4637 | 2012-03-27 18:42 | 2010-12-30 | Show | GitHub Exploit DB Packet Storm |
| 250988 | 7.5 | 危険 | site2nite | - | Site2Nite Business e-Listings の detail.asp における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4636 | 2012-03-27 18:42 | 2010-12-30 | Show | GitHub Exploit DB Packet Storm |
| 250989 | 7.5 | 危険 | site2nite | - | Site2Nite VRBO Listings の detail.asp における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4635 | 2012-03-27 18:42 | 2010-12-30 | Show | GitHub Exploit DB Packet Storm |
| 250990 | 7.5 | 危険 | sumeffect | - | digiSHOP の cart.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4633 | 2012-03-27 18:42 | 2010-12-30 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 3, 2026, 4:18 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 257471 | 8.8 |
HIGH
Network |
graphicsmagick debian |
graphicsmagick debian_linux |
In GraphicsMagick 1.4 snapshot-20171217 Q8, there is a stack-based buffer over-read in WriteWEBPImage in coders/webp.c, related to an incompatibility with libwebp versions, 0.5.0 and later, that use … |
CWE-125
Out-of-bounds Read |
CVE-2017-17913 | 2024-11-21 12:18 | 2017-12-28 | Show | GitHub Exploit DB Packet Storm |
| 257472 | 8.8 |
HIGH
Network |
graphicsmagick debian |
graphicsmagick debian_linux |
In GraphicsMagick 1.4 snapshot-20171217 Q8, there is a heap-based buffer over-read in ReadNewsProfile in coders/tiff.c, in which LocaleNCompare reads heap data beyond the allocated region. |
CWE-125
Out-of-bounds Read |
CVE-2017-17912 | 2024-11-21 12:18 | 2017-12-28 | Show | GitHub Exploit DB Packet Storm |
| 257473 | 6.1 |
MEDIUM
Network |
archon | archon | packages/core/contact.php in Archon 3.21 rev-1 has XSS in the referer parameter in an index.php?p=core/contact request, aka Open Bug Bounty ID OBB-278503. |
CWE-79
Cross-site Scripting |
CVE-2017-17911 | 2024-11-21 12:18 | 2017-12-28 | Show | GitHub Exploit DB Packet Storm |
| 257474 | 4.8 |
MEDIUM
Network |
responsive_realestate_script_project | responsive_realestate_script | PHP Scripts Mall Responsive Realestate Script has XSS via the admin/general.php gplus parameter. |
CWE-79
Cross-site Scripting |
CVE-2017-17909 | 2024-11-21 12:18 | 2017-12-28 | Show | GitHub Exploit DB Packet Storm |
| 257475 | 8.8 |
HIGH
Network |
responsive_realestate_script_project | responsive_realestate_script | PHP Scripts Mall Responsive Realestate Script has CSRF via admin/general. |
CWE-352
Origin Validation Error |
CVE-2017-17908 | 2024-11-21 12:18 | 2017-12-28 | Show | GitHub Exploit DB Packet Storm |
| 257476 | 6.1 |
MEDIUM
Network |
car_rental_script_project | car_rental_script | PHP Scripts Mall Car Rental Script has XSS via the admin/areaedit.php carid parameter or the admin/sitesettings.php websitename parameter. |
CWE-79
Cross-site Scripting |
CVE-2017-17907 | 2024-11-21 12:18 | 2017-12-28 | Show | GitHub Exploit DB Packet Storm |
| 257477 | 9.8 |
CRITICAL
Network |
car_rental_script_project | car_rental_script | PHP Scripts Mall Car Rental Script has SQL Injection via the admin/carlistedit.php carid parameter. |
CWE-89
SQL Injection |
CVE-2017-17906 | 2024-11-21 12:18 | 2017-12-28 | Show | GitHub Exploit DB Packet Storm |
| 257478 | 8.8 |
HIGH
Network |
car_rental_script_project | car_rental_script | PHP Scripts Mall Car Rental Script has CSRF via admin/sitesettings.php. |
CWE-352
Origin Validation Error |
CVE-2017-17905 | 2024-11-21 12:18 | 2017-12-28 | Show | GitHub Exploit DB Packet Storm |
| 257479 | 5.4 |
MEDIUM
Network |
fortunescripts | lynda_clone | FS Lynda Clone has XSS via the keywords parameter to tutorial/ or the edit_profile_first_name parameter to user/edit_profile. |
CWE-79
Cross-site Scripting |
CVE-2017-17904 | 2024-11-21 12:18 | 2017-12-28 | Show | GitHub Exploit DB Packet Storm |
| 257480 | 8.8 |
HIGH
Network |
fortunescripts | lynda_clone | FS Lynda Clone has CSRF via user/edit_profile, as demonstrated by adding content to the user panel. |
CWE-352
Origin Validation Error |
CVE-2017-17903 | 2024-11-21 12:18 | 2017-12-28 | Show | GitHub Exploit DB Packet Storm |