|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 3, 2026, noon
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 251121 | 6.8 | 警告 | NetArt Media | - | NetArt MEDIA Real Estate Portal の AGENTS/index.php におけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2010-3606 | 2012-03-27 18:42 | 2010-09-24 | Show | GitHub Exploit DB Packet Storm |
| 251122 | 4.3 | 警告 | Alex Kellner TYPO3 Association |
- | TYPO3 の powermail extension におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-3605 | 2012-03-27 18:42 | 2010-09-22 | Show | GitHub Exploit DB Packet Storm |
| 251123 | 7.5 | 危険 | Alex Kellner TYPO3 Association |
- | TYPO3 の powermail extension における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-3604 | 2012-03-27 18:42 | 2010-09-22 | Show | GitHub Exploit DB Packet Storm |
| 251124 | 6.8 | 警告 | i7MEDIA, LLC | - | mojoPortal の ファイルマネージャサービスにおけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2010-3603 | 2012-03-27 18:42 | 2010-09-24 | Show | GitHub Exploit DB Packet Storm |
| 251125 | 4.3 | 警告 | i7MEDIA, LLC | - | mojoPortal の ProfileView.aspx におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-3602 | 2012-03-27 18:42 | 2010-09-24 | Show | GitHub Exploit DB Packet Storm |
| 251126 | 7.5 | 危険 | Invision Power Services, Inc | - | ibPhotohost の index.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2010-3601 | 2012-03-27 18:42 | 2010-09-24 | Show | GitHub Exploit DB Packet Storm |
| 251127 | 9 | 危険 | オラクル | - | Oracle VM の OracleVM コンポーネントにおける ovs エージェントの処理に関する脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-3585 | 2012-03-27 18:42 | 2010-10-14 | Show | GitHub Exploit DB Packet Storm |
| 251128 | 4.3 | 警告 | オラクル | - | Oracle VM の Oracle VM コンポーネントにおける ovs エージェントの処理に関する脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-3584 | 2012-03-27 18:42 | 2010-10-14 | Show | GitHub Exploit DB Packet Storm |
| 251129 | 9 | 危険 | オラクル | - | Oracle VM の Oracle VM コンポーネントにおける ovs エージェントの処理に関する脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-3583 | 2012-03-27 18:42 | 2010-10-14 | Show | GitHub Exploit DB Packet Storm |
| 251130 | 9 | 危険 | オラクル | - | Oracle Fusion Middleware の OracleVM コンポーネントにおける ovs エージェントの処理に関する脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-3582 | 2012-03-27 18:42 | 2010-10-14 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 3, 2026, 4:18 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 248091 | 8.8 |
HIGH
Network |
trendmicro | email_encryption_gateway | A vulnerability in Trend Micro Email Encryption Gateway 5.5 could allow a remote attacker to execute arbitrary SQL statements on vulnerable installations due to a flaw in the formRegistration2 class.… |
CWE-89
SQL Injection |
CVE-2018-10351 | 2024-11-21 12:41 | 2018-05-24 | Show | GitHub Exploit DB Packet Storm |
| 248092 | 6.1 |
MEDIUM
Network |
ilias | ilias | error.php in ILIAS 5.2.x through 5.3.x before 5.3.4 allows XSS via the text of a PDO exception. |
CWE-79
Cross-site Scripting |
CVE-2018-10307 | 2024-11-21 12:41 | 2018-05-18 | Show | GitHub Exploit DB Packet Storm |
| 248093 | 6.1 |
MEDIUM
Network |
ilias | ilias | Services/Form/classes/class.ilDateDurationInputGUI.php and Services/Form/classes/class.ilDateTimeInputGUI.php in ILIAS 5.1.x through 5.3.x before 5.3.4 allow XSS via an invalid date. |
CWE-79
Cross-site Scripting |
CVE-2018-10306 | 2024-11-21 12:41 | 2018-05-18 | Show | GitHub Exploit DB Packet Storm |
| 248094 | 7.0 |
HIGH
Local |
printeron | printeron | PrinterOn Enterprise 4.1.3 stores the Active Directory bind credentials using base64 encoding, which allows local users to obtain credentials for a domain user by reading the cps_config.xml file. |
CWE-522
Insufficiently Protected Credentials |
CVE-2018-10327 | 2024-11-21 12:41 | 2018-05-18 | Show | GitHub Exploit DB Packet Storm |
| 248095 | 5.4 |
MEDIUM
Network |
printeron | printeron | PrinterOn Enterprise 4.1.3 suffers from multiple authenticated stored XSS vulnerabilities via the (1) department field in the printer configuration, (2) description field in the print server configur… |
CWE-79
Cross-site Scripting |
CVE-2018-10326 | 2024-11-21 12:41 | 2018-05-18 | Show | GitHub Exploit DB Packet Storm |
| 248096 | 9.0 |
CRITICAL
Network |
phoenixcontact |
fl_switch_3005_firmware fl_switch_3005t_firmware fl_switch_3004t-fx_firmware fl_switch_3004t-fx_st_firmware fl_switch_3008_firmware fl_switch_3008t_firmware fl_switch_3006t-2fx_firm… |
All Phoenix Contact managed FL SWITCH 3xxx, 4xxx, 48xx products running firmware version 1.0 to 1.33 are prone to buffer overflows when handling very large cookies (a different vulnerability than CVE… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2018-10731 | 2024-11-21 12:41 | 2018-05-18 | Show | GitHub Exploit DB Packet Storm |
| 248097 | 9.1 |
CRITICAL
Network |
phoenixcontact |
fl_switch_3005_firmware fl_switch_3005t_firmware fl_switch_3004t-fx_firmware fl_switch_3004t-fx_st_firmware fl_switch_3008_firmware fl_switch_3008t_firmware fl_switch_3006t-2fx_firm… |
All Phoenix Contact managed FL SWITCH 3xxx, 4xxx, 48xx products running firmware version 1.0 to 1.33 are prone to OS command injection. |
CWE-78
OS Command |
CVE-2018-10730 | 2024-11-21 12:41 | 2018-05-18 | Show | GitHub Exploit DB Packet Storm |
| 248098 | 5.3 |
MEDIUM
Network |
phoenixcontact |
fl_switch_3005_firmware fl_switch_3005t_firmware fl_switch_3004t-fx_firmware fl_switch_3004t-fx_st_firmware fl_switch_3008_firmware fl_switch_3008t_firmware fl_switch_3006t-2fx_firm… |
All Phoenix Contact managed FL SWITCH 3xxx, 4xxx, 48xx products running firmware version 1.0 to 1.33 allow reading the configuration file by an unauthenticated user. |
CWE-200
Information Exposure |
CVE-2018-10729 | 2024-11-21 12:41 | 2018-05-18 | Show | GitHub Exploit DB Packet Storm |
| 248099 | 8.1 |
HIGH
Network |
phoenixcontact |
fl_switch_3005_firmware fl_switch_3005t_firmware fl_switch_3004t-fx_firmware fl_switch_3004t-fx_st_firmware fl_switch_3008_firmware fl_switch_3008t_firmware fl_switch_3006t-2fx_firm… |
All Phoenix Contact managed FL SWITCH 3xxx, 4xxx, 48xx products running firmware version 1.0 to 1.33 are prone to buffer overflows (a different vulnerability than CVE-2018-10731). |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2018-10728 | 2024-11-21 12:41 | 2018-05-18 | Show | GitHub Exploit DB Packet Storm |
| 248100 | 8.8 |
HIGH
Network |
projectpier | projectpier | Unrestricted file upload vulnerability in the Files plugin in ProjectPier 0.88 and earlier allows remote authenticated users to execute arbitrary PHP code by uploading a file with an executable exten… |
CWE-434
Unrestricted Upload of File with Dangerous Type |
CVE-2018-10760 | 2024-11-21 12:41 | 2018-05-16 | Show | GitHub Exploit DB Packet Storm |