|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 17, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 251411 | 6.8 | 警告 | Canonical | - | Ubuntu の Software Center における任意のコードを実行される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2011-3150 | 2011-12-8 12:12 | 2011-11-21 | Show | GitHub Exploit DB Packet Storm |
| 251412 | 4.3 | 警告 | phpWebSite | - | phpWebSite におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-4265 | 2011-12-8 12:04 | 2011-12-8 | Show | GitHub Exploit DB Packet Storm |
| 251413 | 7.5 | 危険 | One Click Orgs | - | One Click Orgs におけるアクセス権を取得される脆弱性 |
CWE-287
不適切な認証 |
CVE-2011-4677 | 2011-12-7 16:25 | 2011-12-6 | Show | GitHub Exploit DB Packet Storm |
| 251414 | 5.8 | 警告 | One Click Orgs | - | One Click Orgs におけるオープンリダイレクトの複数の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2011-4553 | 2011-12-7 16:19 | 2011-12-6 | Show | GitHub Exploit DB Packet Storm |
| 251415 | 4.3 | 警告 | One Click Orgs | - | One Click Orgs におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-4552 | 2011-12-7 16:18 | 2011-12-6 | Show | GitHub Exploit DB Packet Storm |
| 251416 | 7.5 | 危険 | osCommerce | - | osCommerce における複数のディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2011-4543 | 2011-12-6 16:33 | 2011-12-5 | Show | GitHub Exploit DB Packet Storm |
| 251417 | 7.5 | 危険 | Zabbix | - | Zabbix の popup.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-4674 | 2011-12-6 16:27 | 2011-11-24 | Show | GitHub Exploit DB Packet Storm |
| 251418 | 7.5 | 危険 | Automattic Inc. | - | WordPress 用 Jetpack プラグインにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-4673 | 2011-12-6 16:26 | 2011-12-2 | Show | GitHub Exploit DB Packet Storm |
| 251419 | 7.5 | 危険 | Valid | - | Valid tiny-erp における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-4672 | 2011-12-6 16:25 | 2011-12-2 | Show | GitHub Exploit DB Packet Storm |
| 251420 | 7.5 | 危険 | AdRotate Plugin | - | WordPress 用 AdRotate プラグインにおける SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2011-4671 | 2011-12-6 16:24 | 2011-12-2 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 17, 2026, 4:15 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 291121 | 7.5 |
HIGH
Network |
cisco | ace_application_control_engine_module_a2 | Cisco ACE A2(3.6) allows log retention DoS. |
NVD-CWE-Other
|
CVE-2013-1202 | 2024-11-21 10:49 | 2020-02-7 | Show | GitHub Exploit DB Packet Storm |
| 291122 | 5.3 |
MEDIUM
Network |
webcalendar_project | webcalendar | webcalendar before 1.2.7 shows the reason for a failed login (e.g., "no such user"). |
CWE-203
Information Exposure Through Discrepancy |
CVE-2013-1422 | 2024-11-21 10:49 | 2020-02-4 | Show | GitHub Exploit DB Packet Storm |
| 291123 | 7.5 |
HIGH
Network |
veraxsystems | network_management_system | Verax NMS prior to 2.1.0 uses an encryption key that is hardcoded in a JAR archive. |
CWE-798
Use of Hard-coded Credentials |
CVE-2013-1352 | 2024-11-21 10:49 | 2020-01-30 | Show | GitHub Exploit DB Packet Storm |
| 291124 | 5.9 |
MEDIUM
Network |
veraxsystems | network_management_system | Verax NMS prior to 2.10 allows authentication via the encrypted password without knowing the cleartext password. |
CWE-294
Authentication Bypass by Capture-replay |
CVE-2013-1351 | 2024-11-21 10:49 | 2020-01-30 | Show | GitHub Exploit DB Packet Storm |
| 291125 | 9.1 |
CRITICAL
Network |
veraxsystems | network_management_system | Verax NMS prior to 2.1.0 has multiple security bypass vulnerabilities |
CWE-863
Incorrect Authorization |
CVE-2013-1350 | 2024-11-21 10:49 | 2020-01-30 | Show | GitHub Exploit DB Packet Storm |
| 291126 | 5.3 |
MEDIUM
Network |
dlink |
dcs-3411_firmware dcs-3430_firmware dcs-5605_firmware dcs-5635_firmware dcs-1100l_firmware dcs-1130l_firmware dcs-1100_firmware dcs-1130_firmware dcs-2102_firmware dcs-2121… |
An Authentication vulnerability exists in D-LINK WCS-1100 1.02, TESCO DCS-2121 1.05_TESCO, TESCO DCS-2102 1.05_TESCO, DCS-7510 1.00, DCS-7410 1.00, DCS-6410 1.00, DCS-5635 1.01, DCS-5605 1.01, DCS-52… |
CWE-798
Use of Hard-coded Credentials |
CVE-2013-1603 | 2024-11-21 10:49 | 2020-01-29 | Show | GitHub Exploit DB Packet Storm |
| 291127 | 7.5 |
HIGH
Network |
dlink |
dcs-3411_firmware dcs-3430_firmware dcs-5605_firmware dcs-5635_firmware dcs-1100l_firmware dcs-1130l_firmware dcs-1100_firmware dcs-1130_firmware dcs-2102_firmware dcs-2121… |
An Information Disclosure vulnerability exists due to insufficient validation of authentication cookies for the RTSP session in D-Link DCS-5635 1.01, DCS-1100L 1.04, DCS-1130L 1.04, DCS-1100 1.03/1.0… |
CWE-200
Information Exposure |
CVE-2013-1602 | 2024-11-21 10:49 | 2020-01-29 | Show | GitHub Exploit DB Packet Storm |
| 291128 | 5.3 |
MEDIUM
Network |
dlink |
dcs-3411_firmware dcs-3430_firmware dcs-5605_firmware dcs-5635_firmware dcs-1100l_firmware dcs-1130l_firmware dcs-1100_firmware dcs-1130_firmware dcs-2102_firmware dcs-2121… |
An Information Disclosure vulnerability exists due to a failure to restrict access on the lums.cgi script when processing a live video stream in D-LINK An Information Disclosure vulnerability exists … |
CWE-200
Information Exposure |
CVE-2013-1601 | 2024-11-21 10:49 | 2020-01-29 | Show | GitHub Exploit DB Packet Storm |
| 291129 | 5.3 |
MEDIUM
Network |
dlink |
dcs-2102_firmware dcs-2121_firmware |
An Authentication Bypass vulnerability exists in upnp/asf-mp4.asf when streaming live video in D-Link TESCO DCS-2121 1.05_TESCO, TESCO DCS-2102 1.05_TESCO, DCS-2121 1.06_FR, 1.06, and 1.05_RU, DCS-21… |
CWE-287
Improper Authentication |
CVE-2013-1600 | 2024-11-21 10:49 | 2020-01-29 | Show | GitHub Exploit DB Packet Storm |
| 291130 | 9.8 |
CRITICAL
Network |
dlink |
dcs-3411_firmware dcs-3430_firmware dcs-5605_firmware dcs-5635_firmware dcs-1100l_firmware dcs-1130l_firmware dcs-1100_firmware dcs-1130_firmware dcs-2102_firmware dcs-2121… |
A Command Injection vulnerability exists in the /var/www/cgi-bin/rtpd.cgi script in D-Link IP Cameras DCS-3411/3430 firmware 1.02, DCS-5605/5635 1.01, DCS-1100L/1130L 1.04, DCS-1100/1130 1.03, DCS-11… |
CWE-78
OS Command |
CVE-2013-1599 | 2024-11-21 10:49 | 2020-01-29 | Show | GitHub Exploit DB Packet Storm |