|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 5, 2026, 2:06 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 251031 | 7.5 | 危険 | Digital Junkies | - | dompdf の dompdf.php における任意の PHP コードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2010-4879 | 2012-03-27 18:42 | 2011-10-7 | Show | GitHub Exploit DB Packet Storm |
| 251032 | 7.5 | 危険 | WordPress.org edgetechweb |
- | Event Registration プラグインにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4839 | 2012-03-27 18:42 | 2011-09-13 | Show | GitHub Exploit DB Packet Storm |
| 251033 | 6 | 警告 | extensiondepot Joomla! |
- | Joomla! の JSupport (com_jsupport) コンポーネントにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4838 | 2012-03-27 18:42 | 2011-09-13 | Show | GitHub Exploit DB Packet Storm |
| 251034 | 4.3 | 警告 | extensiondepot | - | Joomla! の JSupport (com_jsupport) コンポーネントにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-4837 | 2012-03-27 18:42 | 2011-09-13 | Show | GitHub Exploit DB Packet Storm |
| 251035 | 4.3 | 警告 | phpshop | - | PHPShop の register.html におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-4836 | 2012-03-27 18:42 | 2011-09-13 | Show | GitHub Exploit DB Packet Storm |
| 251036 | 4 | 警告 | OneOrZero | - | OneOrZero AIMS の index.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2010-4835 | 2012-03-27 18:42 | 2011-09-13 | Show | GitHub Exploit DB Packet Storm |
| 251037 | 6.5 | 警告 | OneOrZero | - | OneOrZero AIMS の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4834 | 2012-03-27 18:42 | 2011-09-13 | Show | GitHub Exploit DB Packet Storm |
| 251038 | 9.3 | 危険 | GTK+ | - | GTK+ の modules/engines/ms-windows/xp_theme.c における権限を取得される脆弱性 |
CWE-Other
その他 |
CVE-2010-4833 | 2012-03-27 18:42 | 2011-09-6 | Show | GitHub Exploit DB Packet Storm |
| 251039 | 7.5 | 危険 | t-dreams | - | T-Dreams Job Career Package の Resumes/TD_RESUME_Indlist.asp における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4830 | 2012-03-27 18:42 | 2011-08-24 | Show | GitHub Exploit DB Packet Storm |
| 251040 | 7.5 | 危険 | t-dreams | - | T-Dreams Cars Ads Package の processview.asp における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-4829 | 2012-03-27 18:42 | 2011-08-24 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 5, 2026, 4:11 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 282541 | 7.5 |
HIGH
Network |
gnu | emacs | Emacs 24.4 allows remote attackers to bypass security restrictions. |
CWE-200
Information Exposure |
CVE-2014-9483 | 2024-11-21 11:20 | 2017-08-29 | Show | GitHub Exploit DB Packet Storm |
| 282542 | 6.1 |
MEDIUM
Network |
vbulletin | vbulletin | Cross-site scripting (XSS) vulnerability in vBulletin 3.5.4, 3.6.0, 3.6.7, 3.8.7, 4.2.2, 5.0.5, and 5.1.3. |
CWE-79
Cross-site Scripting |
CVE-2014-9469 | 2024-11-21 11:20 | 2017-08-29 | Show | GitHub Exploit DB Packet Storm |
| 282543 | 8.8 |
HIGH
Network |
10web | photo_gallery | Unrestricted File Upload vulnerability in Photo Gallery 1.2.5. |
CWE-434
Unrestricted Upload of File with Dangerous Type |
CVE-2014-9312 | 2024-11-21 11:20 | 2017-08-29 | Show | GitHub Exploit DB Packet Storm |
| 282544 | 9.8 |
CRITICAL
Network |
android | In all Qualcomm products with Android releases from CAF using the Linux kernel, the use of an out-of-range pointer offset is potentially possible in rollback protection. |
CWE-118
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2014-9411 | 2024-11-21 11:20 | 2017-08-19 | Show | GitHub Exploit DB Packet Storm | |
| 282545 | 8.2 |
HIGH
Network |
snapcreek | duplicator | The Duplicator plugin in Wordpress before 0.5.10 allows remote authenticated users to create and download backup files. |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2014-9262 | 2024-11-21 11:20 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 282546 | 8.8 |
HIGH
Network |
downloadmanager | download_manager | The basic_settings function in the download manager plugin for WordPress before 2.7.3 allows remote authenticated users to update every WordPress option. |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2014-9260 | 2024-11-21 11:20 | 2017-08-8 | Show | GitHub Exploit DB Packet Storm |
| 282547 | 6.1 |
MEDIUM
Network |
wordpress_backup_to_dropbox_project | wordpress_backup_to_dropbox | Cross-site scripting (XSS) vulnerability in the WordPress Backup to Dropbox plugin before 4.1 for WordPress. |
CWE-79
Cross-site Scripting |
CVE-2014-9310 | 2024-11-21 11:20 | 2017-06-8 | Show | GitHub Exploit DB Packet Storm |
| 282548 | 8.8 |
HIGH
Network |
huawei |
fusionmanager usg9500_firmware usg2100_firmware usg2200_firmware usg5100_firmware usg5500_firmware |
Huawei USG9500 with software V200R001C01SPC800 and earlier versions, V300R001C00; USG2100 with software V300R001C00SPC900 and earlier versions; USG2200 with software V300R001C00SPC900; USG5100 with s… |
CWE-352
Origin Validation Error |
CVE-2014-9137 | 2024-11-21 11:20 | 2017-04-3 | Show | GitHub Exploit DB Packet Storm |
| 282549 | 8.8 |
HIGH
Network |
huawei |
fusionmanager usg9500_firmware usg2100_firmware usg2200_firmware usg5100_firmware usg5500_firmware |
Huawei FusionManager with software V100R002C03 and V100R003C00 could allow an unauthenticated, remote attacker to conduct a CSRF attack against the user of the web interface. |
CWE-352
Origin Validation Error |
CVE-2014-9136 | 2024-11-21 11:20 | 2017-04-3 | Show | GitHub Exploit DB Packet Storm |
| 282550 | 7.8 |
HIGH
Local |
opensuse fedoraproject kernel |
opensuse fedora util-linux |
Blkid in util-linux before 2.26rc-1 allows local users to execute arbitrary code. |
CWE-77
Command Injection |
CVE-2014-9114 | 2024-11-21 11:20 | 2017-04-1 | Show | GitHub Exploit DB Packet Storm |