|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":July 1, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 251321 | 4.3 | 警告 | アップル | - | Apple Mac OS X および iPhone の WebCore における CRLF インジェクションの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2007-2401 | 2012-06-26 15:46 | 2007-06-22 | Show | GitHub Exploit DB Packet Storm |
| 251322 | 4.3 | 警告 | アップル マイクロソフト |
- | Apple Safari におけるセキュリティモデルを回避される脆弱性 |
CWE-362 CWE-79 |
CVE-2007-2400 | 2012-06-26 15:46 | 2007-06-25 | Show | GitHub Exploit DB Packet Storm |
| 251323 | 9.3 | 危険 | アップル | - | Apple Mac OS X および iPhone の WebKit における任意のコードを実行される脆弱性 |
CWE-DesignError
|
CVE-2007-2399 | 2012-06-26 15:46 | 2007-06-22 | Show | GitHub Exploit DB Packet Storm |
| 251324 | 4.3 | 警告 | アップル | - | Apple Safari におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2007-2391 | 2012-06-26 15:46 | 2007-06-14 | Show | GitHub Exploit DB Packet Storm |
| 251325 | 10 | 危険 | アップル | - | Apple Mac OS X の iChat におけるバッファオーバーフローの脆弱性 | - | CVE-2007-2390 | 2012-06-26 15:46 | 2007-05-24 | Show | GitHub Exploit DB Packet Storm |
| 251326 | 7.1 | 危険 | アップル | - | Apple QuickTime for Java における Web ブラウザからメモリを読み取られる脆弱性 | - | CVE-2007-2389 | 2012-06-26 15:46 | 2007-05-29 | Show | GitHub Exploit DB Packet Storm |
| 251327 | 9.3 | 危険 | アップル | - | Apple QuickTime for Java における任意のコードを実行される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2007-2388 | 2012-06-26 15:46 | 2007-05-29 | Show | GitHub Exploit DB Packet Storm |
| 251328 | 10 | 危険 | アップル | - | Intel ハードウェア上の Apple Xserve Lights-Out Management における管理アクセス権を取得される脆弱性 | - | CVE-2007-2387 | 2012-06-26 15:46 | 2007-05-31 | Show | GitHub Exploit DB Packet Storm |
| 251329 | 9.4 | 危険 | アップル | - | Apple Mac OS X の mDNSResponder におけるバッファオーバーフローの脆弱性 | - | CVE-2007-2386 | 2012-06-26 15:46 | 2007-05-24 | Show | GitHub Exploit DB Packet Storm |
| 251330 | 5 | 警告 | - | GWT フレームワークにおけるデータを取得される脆弱性 | - | CVE-2007-2378 | 2012-06-26 15:46 | 2007-04-30 | Show | GitHub Exploit DB Packet Storm |
Update Date:July 1, 2026, 4:27 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 253611 | 5.5 |
MEDIUM
Local |
k7computing |
enterprise_security ultimate_security total_security antivrius |
An Incorrect Access Control issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53. |
CWE-269
Improper Privilege Management |
CVE-2018-11006 | 2024-11-21 12:42 | 2021-01-12 | Show | GitHub Exploit DB Packet Storm |
| 253612 | 5.5 |
MEDIUM
Local |
k7computing |
enterprise_security ultimate_security total_security antivrius |
A Memory Leak issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53. |
CWE-125
Out-of-bounds Read |
CVE-2018-11005 | 2024-11-21 12:42 | 2021-01-12 | Show | GitHub Exploit DB Packet Storm |
| 253613 | 9.8 |
CRITICAL
Network |
netgear |
wc7500_firmware wc7520_firmware wc7600v1_firmware wc7600v2_firmware wc9500_firmware |
NETGEAR has released fixes for a pre-authentication command injection in request_handler.php security vulnerability on the following product models: WC7500, running firmware versions prior to 6.5.3.5… |
CWE-77
Command Injection |
CVE-2018-11106 | 2024-11-21 12:42 | 2020-04-2 | Show | GitHub Exploit DB Packet Storm |
| 253614 | 5.4 |
MEDIUM
Network |
redhat | cloudforms_management_engine | cloudforms version, cloudforms 5.8 and cloudforms 5.9, is vulnerable to a cross-site-scripting. A flaw was found in CloudForms's v2v infrastructure mapping delete feature. A stored cross-site scripti… | - | CVE-2018-10854 | 2024-11-21 12:42 | 2019-11-22 | Show | GitHub Exploit DB Packet Storm |
| 253615 | 6.1 |
MEDIUM
Network |
acquia | mautic | An issue was discovered in Mautic 2.13.1. It has Stored XSS via the company name field. |
CWE-79
Cross-site Scripting |
CVE-2018-11200 | 2024-11-21 12:42 | 2019-09-21 | Show | GitHub Exploit DB Packet Storm |
| 253616 | 6.1 |
MEDIUM
Network |
acquia | mautic | An issue was discovered in Mautic 2.13.1. There is Stored XSS via the authorUrl field in config.json. |
CWE-79
Cross-site Scripting |
CVE-2018-11198 | 2024-11-21 12:42 | 2019-09-7 | Show | GitHub Exploit DB Packet Storm |
| 253617 | 8.8 |
HIGH
Network |
jolokia redhat |
jolokia openstack |
A flaw was found in Jolokia versions from 1.2 to before 1.6.1. Affected versions are vulnerable to a system-wide CSRF. This holds true for properly configured instances with strict checking for origi… |
CWE-352
Origin Validation Error |
CVE-2018-10899 | 2024-11-21 12:42 | 2019-08-1 | Show | GitHub Exploit DB Packet Storm |
| 253618 | 8.8 |
HIGH
Network |
open-xchange | ox_guard | OX Guard 2.8.0 has CSRF. |
CWE-352
Origin Validation Error |
CVE-2018-10986 | 2024-11-21 12:42 | 2019-07-4 | Show | GitHub Exploit DB Packet Storm |
| 253619 | 6.1 |
MEDIUM
Network |
monstra | monstra_cms | Monstra CMS 3.0.4 and earlier has XSS via index.php. |
CWE-79
Cross-site Scripting |
CVE-2018-11227 | 2024-11-21 12:42 | 2019-07-4 | Show | GitHub Exploit DB Packet Storm |
| 253620 | 9.8 |
CRITICAL
Network |
cloudera | data_science_workbench | Remote code execution is possible in Cloudera Data Science Workbench version 1.3.0 and prior releases via unspecified attack vectors. |
CWE-200 CWE-78 Information Exposure OS Command |
CVE-2018-11215 | 2024-11-21 12:42 | 2019-07-4 | Show | GitHub Exploit DB Packet Storm |